Buffer overflow in NAI Sniffer Agent allows remote attackers to execute arbitrary commands via a long SNMP community name.
📦
sniffer_agent
Vendor: network_associates
Actively Exploited
0
CISA KEV List
PoC / Exploits
0
Code Available
Total RCEs
1
Remote Access
Total CVEs
4
Total Indexed
Avg. EPSS
1.08%
Exploit Prob.
Security Vulnerability Index
Page 1 / 1
10.0
CVSS
CVE-2000-1157
RCE
Severity: HIGH
7.5
CVSS
NAI Sniffer Agent uses base64 encoding for authentication, which allows attackers to sniff the network and easily decrypt usernames and passwords.
Severity: HIGH
7.5
CVSS
NAI Sniffer Agent allows remote attackers to gain privileges on the agent by sniffing the initial UDP authentication packets and spoofing commands.
Severity: HIGH
5.0
CVSS
NAI Sniffer Agent allows remote attackers to cause a denial of service (crash) by sending a large number of login requests.
Severity: MEDIUM