CVSTrac filediff Remote Command Execution Vulnerability
BID:10878
Info
CVSTrac filediff Remote Command Execution Vulnerability
| Bugtraq ID: | 10878 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 05 2004 12:00AM |
| Updated: | Aug 05 2004 12:00AM |
| Credit: | Discovery of this issue is credited to Richard Ngo <[email protected]>. |
| Vulnerable: |
OpenPKG OpenPKG 2.1 OpenPKG OpenPKG 2.0 OpenPKG OpenPKG Current CVSTrac CVSTrac 1.1.3 CVSTrac CVSTrac 1.1.2 CVSTrac CVSTrac 1.1.1 CVSTrac CVSTrac 1.1 |
| Not Vulnerable: | |
Discussion
CVSTrac filediff Remote Command Execution Vulnerability
CVSTrac is affected by a remote command execution vulnerability in the 'filediff' functionality. This issue is due to an input validation error that allows for the appending of shell commands.
An attacker could leverage this issue to execute arbitrary shell commands on a vulnerable computer with the privileges of the web server process.
CVSTrac is affected by a remote command execution vulnerability in the 'filediff' functionality. This issue is due to an input validation error that allows for the appending of shell commands.
An attacker could leverage this issue to execute arbitrary shell commands on a vulnerable computer with the privileges of the web server process.
Exploit / POC
CVSTrac filediff Remote Command Execution Vulnerability
No exploit is required to leverage this issue. The following proof of concept has been provided:
http://www.example.com/cvstrac/filediff?f=CVSROOT/rcsinfo&v1=1.1&v2=1.2;w;
No exploit is required to leverage this issue. The following proof of concept has been provided:
http://www.example.com/cvstrac/filediff?f=CVSROOT/rcsinfo&v1=1.1&v2=1.2;w;
Solution / Fix
CVSTrac filediff Remote Command Execution Vulnerability
Solution:
OpenPKG has released advisory OpenPKG-SA-2004.036 along with fixes to address this issue. Please see the referenced advisory for further information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
OpenPKG has released advisory OpenPKG-SA-2004.036 along with fixes to address this issue. Please see the referenced advisory for further information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
CVSTrac filediff Remote Command Execution Vulnerability
References:
References:
- Product Home Page (CVSTrac)
- CVStrac Remote Arbitrary Code Execution exploit (Richard Ngo
)