Techland XPand Rally 1.0/1.1 - Remote Format String

EDB-ID:

25205

CVE:

N/A


Platform:

Multiple

Published:

2005-03-10

source: http://www.securityfocus.com/bid/12772/info

A remote format string vulnerability affects XPand Rally. This issue is due to a failure of the application to securely call a formatted printing function.

An attacker may leverage this issue to execute arbitrary code with the privileges of an unsuspecting user that activated the vulnerable server or client application. 

https://github.com/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/25205.zip