Exodus URI Handler Command Line Parameter Injection Vulnerability
BID:32330
Info
Exodus URI Handler Command Line Parameter Injection Vulnerability
| Bugtraq ID: | 32330 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-6935 CVE-2008-6936 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 17 2008 12:00AM |
| Updated: | Jul 05 2016 10:01PM |
| Credit: | Nine:Situations:Group::strawdog |
| Vulnerable: |
Exodus Exodus 0.10 |
| Not Vulnerable: | |
Discussion
Exodus URI Handler Command Line Parameter Injection Vulnerability
Exodus is prone to a vulnerability that lets attackers inject command-line parameters through protocol handlers. This issue occurs because the application fails to adequately sanitize user-supplied input.
Exploiting this issue would permit remote attackers to influence command options that can be called through the vulnerable protocol handler and to execute commands with the privileges of a user running the application. Attackers may also be able to leverage this issue to execute arbitrary code with the privileges of the user running the vulnerable application.
Exodus 0.10 is vulnerable; other versions may also be affected.
Exodus is prone to a vulnerability that lets attackers inject command-line parameters through protocol handlers. This issue occurs because the application fails to adequately sanitize user-supplied input.
Exploiting this issue would permit remote attackers to influence command options that can be called through the vulnerable protocol handler and to execute commands with the privileges of a user running the application. Attackers may also be able to leverage this issue to execute arbitrary code with the privileges of the user running the vulnerable application.
Exodus 0.10 is vulnerable; other versions may also be affected.
Exploit / POC
Exodus URI Handler Command Line Parameter Injection Vulnerability
The following proofs of concept demonstrate this vulnerability:
im:///'%20-?
im:///'%20-l%20c:\boot.ini%20-v
im:///'%20-c%20file:///aaaa%20
The following example exploit is available:
The following proofs of concept demonstrate this vulnerability:
im:///'%20-?
im:///'%20-l%20c:\boot.ini%20-v
im:///'%20-c%20file:///aaaa%20
The following example exploit is available:
Solution / Fix
Exodus URI Handler Command Line Parameter Injection Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Exodus URI Handler Command Line Parameter Injection Vulnerability
References:
References: