Compuware DriverStudio Unauthorized Remote Reboot Vulnerability
BID:14838
Info
Compuware DriverStudio Unauthorized Remote Reboot Vulnerability
| Bugtraq ID: | 14838 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 15 2005 12:00AM |
| Updated: | Sep 15 2005 12:00AM |
| Credit: | Discovery is credited to cocoruder. |
| Vulnerable: |
Compuware DriverStudio 3.0 beta 2 Compuware DriverStudio 2.7 |
| Not Vulnerable: | |
Discussion
Compuware DriverStudio Unauthorized Remote Reboot Vulnerability
Compuware DriverStudio is prone to a vulnerability that may let unauthorized remote users to reboot the system it is running on.
Remote attackers may exploit this issue by sending a specially crafted UDP datagram to the DriverStudio Remote Control Service.
This issue could be exploited in combination with BID 14837 "Compuware DriverStudio Remote Control Null Session Authentication Bypass Vulnerability" to create circumstances that allow for remote code execution on the affected computer.
Compuware DriverStudio is prone to a vulnerability that may let unauthorized remote users to reboot the system it is running on.
Remote attackers may exploit this issue by sending a specially crafted UDP datagram to the DriverStudio Remote Control Service.
This issue could be exploited in combination with BID 14837 "Compuware DriverStudio Remote Control Null Session Authentication Bypass Vulnerability" to create circumstances that allow for remote code execution on the affected computer.
Exploit / POC
Compuware DriverStudio Unauthorized Remote Reboot Vulnerability
There is no exploit required. Apparently it is possible to exploit this issue by sending a UDP datagram to port 9110 with the following payload:
00000002
This could be accomplished with a publicly available packet crafting utility.
There is no exploit required. Apparently it is possible to exploit this issue by sending a UDP datagram to port 9110 with the following payload:
00000002
This could be accomplished with a publicly available packet crafting utility.
Solution / Fix
Compuware DriverStudio Unauthorized Remote Reboot Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Compuware DriverStudio Unauthorized Remote Reboot Vulnerability
References:
References: