Stack-based buffer overflow in TreeAction.do in Sybase EAServer 4.2.5 through 5.2 allows remote authenticated users to execute arbitrary code via a large javascript parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Easerver | Sybase | 4.2.5 (including) | 4.2.5 (including) |
Easerver | Sybase | 5.0 (including) | 5.0 (including) |
Easerver | Sybase | 5.1 (including) | 5.1 (including) |
Easerver | Sybase | 5.2 (including) | 5.2 (including) |