{
    "id": "CVE-2015-2094",
    "published": "2015-03-09 14:59:12",
    "last_modified": "2026-06-17 00:23:35",
    "cvss_score": "7.5",
    "cvss_severity": "HIGH",
    "cvss_version": "2.0",
    "cvss_vector": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
    "cwe": "CWE-119",
    "description": "Stack-based buffer overflow in the WESPPlayback.WESPPlaybackCtrl.1 control in WebGate WinRDS allows remote attackers to execute arbitrary code via unspecified vectors to the (1) PrintSiteImage, (2) PlaySiteAllChannel, (3) StopSiteAllChannel, or (4) SaveSiteImage function.",
    "epss_score": "0.14010",
    "epss_percentile": "0.96451",
    "kev": 0,
    "kev_due": null,
    "has_exploit": 1,
    "updated_at": "2026-10-02 18:17:15",
    "priority": {
        "rank": 2,
        "label": "Patch early",
        "why": "A public exploit exists."
    },
    "products": [
        {
            "vendor": "webgateinc",
            "product": "winrds"
        }
    ],
    "kev_detail": null,
    "exploits": [
        {
            "source": "exploit-db",
            "ref_id": "36604",
            "title": "WebGate WinRDS 2.0.8 - PlaySiteAllChannel Stack Buffer Overflow",
            "date": "2015-04-02",
            "url": "https://www.exploit-db.com/exploits/36604"
        },
        {
            "source": "exploit-db",
            "ref_id": "36517",
            "title": "WebGate WinRDS 2.0.8 - StopSiteAllChannel Stack Overflow",
            "date": "2015-03-27",
            "url": "https://www.exploit-db.com/exploits/36517"
        }
    ],
    "refs_list": [
        "http://packetstormsecurity.com/files/131069/WebGate-WinRDS-2.0.8-StopSiteAllChannel-Stack-Overflow.html",
        "http://www.osvdb.org/118905",
        "http://www.osvdb.org/118906",
        "http://www.osvdb.org/118907",
        "http://www.osvdb.org/118908",
        "http://www.securityfocus.com/bid/72841",
        "http://www.zerodayinitiative.com/advisories/ZDI-15-071/",
        "http://www.zerodayinitiative.com/advisories/ZDI-15-072/",
        "http://www.zerodayinitiative.com/advisories/ZDI-15-073/",
        "http://www.zerodayinitiative.com/advisories/ZDI-15-074/",
        "https://www.exploit-db.com/exploits/36517/",
        "http://packetstormsecurity.com/files/131069/WebGate-WinRDS-2.0.8-StopSiteAllChannel-Stack-Overflow.html",
        "http://www.osvdb.org/118905",
        "http://www.osvdb.org/118906",
        "http://www.osvdb.org/118907",
        "http://www.osvdb.org/118908",
        "http://www.securityfocus.com/bid/72841",
        "http://www.zerodayinitiative.com/advisories/ZDI-15-071/",
        "http://www.zerodayinitiative.com/advisories/ZDI-15-072/",
        "http://www.zerodayinitiative.com/advisories/ZDI-15-073/",
        "http://www.zerodayinitiative.com/advisories/ZDI-15-074/",
        "https://www.exploit-db.com/exploits/36517/"
    ]
}