Navarino Infinity VU#184077 Multiple Security Vulnerabilities
BID:103544
CVE-2018-5384 | CVE-2018-5385 | CVE-2018-5386 |Info
Navarino Infinity VU#184077 Multiple Security Vulnerabilities
| Bugtraq ID: | 103544 |
| Class: | Input Validation Error |
| CVE: |
CVE-2018-5384 CVE-2018-5385 CVE-2018-5386 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 26 2018 12:00AM |
| Updated: | Mar 26 2018 12:00AM |
| Credit: | Vangelis Stykas |
| Vulnerable: |
Navarino Infinity 2.1.7 |
| Not Vulnerable: |
Navarino Infinity 2.2 |
Discussion
Navarino Infinity VU#184077 Multiple Security Vulnerabilities
Navarino Infinity is prone to multiple security vulnerabilities.
An attacker can exploit these issues to to hijack an arbitrary session, bypass certain security restrictions, perform unauthorized actions, modify the logic of SQL queries, compromise the software, retrieve information, or modify data; other consequences are possible as well.
Navarino Infinity is prone to multiple security vulnerabilities.
An attacker can exploit these issues to to hijack an arbitrary session, bypass certain security restrictions, perform unauthorized actions, modify the logic of SQL queries, compromise the software, retrieve information, or modify data; other consequences are possible as well.
Exploit / POC
Navarino Infinity VU#184077 Multiple Security Vulnerabilities
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Navarino Infinity VU#184077 Multiple Security Vulnerabilities
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Navarino Infinity VU#184077 Multiple Security Vulnerabilities
References:
References: