FlexNet License Server Manager Remote Code Execution Vulnerability
BID:49191
Info
FlexNet License Server Manager Remote Code Execution Vulnerability
| Bugtraq ID: | 49191 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2011-1389 CVE-2011-4135 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 17 2011 12:00AM |
| Updated: | Mar 19 2015 09:26AM |
| Credit: | Luigi Auriemma |
| Vulnerable: |
IBM Telelogic License Server 2.0 IBM Rational License Server 7.0 IBM Rational License Key Server 8.1.2 IBM Rational License Key Server 8.1.1 IBM Rational License Key Server 8.0 Flexera Software FlexNet License Server Manager 0 |
| Not Vulnerable: | |
Discussion
FlexNet License Server Manager Remote Code Execution Vulnerability
FlexNet License Server Manager is prone to a remote code-execution vulnerability.
Attackers can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
FlexNet License Server Manager is prone to a remote code-execution vulnerability.
Attackers can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
Exploit / POC
FlexNet License Server Manager Remote Code Execution Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
FlexNet License Server Manager Remote Code Execution Vulnerability
Solution:
Vendor updates are available. Please contact the vendor for more information.
Solution:
Vendor updates are available. Please contact the vendor for more information.
References
FlexNet License Server Manager Remote Code Execution Vulnerability
References:
References:
- IMPORTANT NOTICE: September 30, 2011�??Hotfix Available for Tier 1 Platforms for P (Flexera)
- Vendor Homepage (Flexera)
- Vulnerability in IBM Rational License Key Server affecting both the license serv (IBM)
- ZDI-11-272: (0day) FlexNet License Server Manager Remote Code Execution Vulnerab (TippingPoint Zero Day Initiative)