Buffer overflow in WiTango Application Server and Tango 2000 allows remote attackers to execute arbitrary code via a long cookie to Witango_UserReference.
Threat-Mapped Scoring
Score: 1.9
Priority: P3 - Important (Medium)
S9 – Sabotage of System/App
S10 – Denial of Service (+0.1 bonus)
EPSS
Score: 0.10086 Percentile:
0.92734
CVSS Scoring
CVSS v2 Score: 7.5
Severity:
Mapped CWE(s)
CWE-120
: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
All CAPEC(s)
CAPEC-10: Buffer Overflow via Environment Variables