Global Moxie Big Medium Unspecified Remote Script Code Execution Vulnerability
BID:11796
Info
Global Moxie Big Medium Unspecified Remote Script Code Execution Vulnerability
| Bugtraq ID: | 11796 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 02 2004 12:00AM |
| Updated: | Dec 02 2004 12:00AM |
| Credit: | This vulnerability was announced by the vendor. |
| Vulnerable: |
Global Moxie Big Medium 1.0 |
| Not Vulnerable: |
Global Moxie Big Medium 1.3.5 |
Discussion
Global Moxie Big Medium Unspecified Remote Script Code Execution Vulnerability
Global Moxie Big Medium is reported prone to a remote unspecified code execution vulnerability. It is reported that this vulnerability may be exploited to allow a remote user to upload arbitrary files into the Big Medium "web" directory.
Global Moxie Big Medium is reported prone to a remote unspecified code execution vulnerability. It is reported that this vulnerability may be exploited to allow a remote user to upload arbitrary files into the Big Medium "web" directory.
Exploit / POC
Global Moxie Big Medium Unspecified Remote Script Code Execution Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Global Moxie Big Medium Unspecified Remote Script Code Execution Vulnerability
Solution:
It is reported that the vendor has released an update (1.3.5) to address this vulnerability, this is not confirmed. Reports indicate that this update is available at the following location:
http://www.globalmoxie.com/cgi-bin/license/download.cgi
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
It is reported that the vendor has released an update (1.3.5) to address this vulnerability, this is not confirmed. Reports indicate that this update is available at the following location:
http://www.globalmoxie.com/cgi-bin/license/download.cgi
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Global Moxie Big Medium Unspecified Remote Script Code Execution Vulnerability
References:
References:
- Big Medium Homepage (Global Moxie)