Novell File Reporter 'NFRAgent.exe' Security Bypass Vulnerability
BID:48468
Info
Novell File Reporter 'NFRAgent.exe' Security Bypass Vulnerability
| Bugtraq ID: | 48468 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 27 2011 12:00AM |
| Updated: | Jun 27 2011 12:00AM |
| Credit: | Luigi Auriemma |
| Vulnerable: |
Novell File Reporter 1.0.4.2 |
| Not Vulnerable: | |
Discussion
Novell File Reporter 'NFRAgent.exe' Security Bypass Vulnerability
Novell File Reporter is prone to a security-bypass vulnerability.
An attacker can exploit this issue to perform unauthorized actions and cause denial-of-service conditions; other attacks are also possible.
Novell File Reporter 1.0.4.2 and prior are vulnerable; other versions may also be affected.
Novell File Reporter is prone to a security-bypass vulnerability.
An attacker can exploit this issue to perform unauthorized actions and cause denial-of-service conditions; other attacks are also possible.
Novell File Reporter 1.0.4.2 and prior are vulnerable; other versions may also be affected.
Exploit / POC
Novell File Reporter 'NFRAgent.exe' Security Bypass Vulnerability
Attackers can exploit this issue using readily available tools. Please see the references for more information.
Attackers can exploit this issue using readily available tools. Please see the references for more information.
Solution / Fix
Novell File Reporter 'NFRAgent.exe' Security Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Novell File Reporter 'NFRAgent.exe' Security Bypass Vulnerability
References:
References:
- Novell File Reporter (Novell)
- Arbitrary files deletion in Novell File Reporter 1.0.4.2 (Luigi Auriemma)