op5 Appliance Multiple Remote Command Execution Vulnerabilities
BID:51212
Info
op5 Appliance Multiple Remote Command Execution Vulnerabilities
| Bugtraq ID: | 51212 |
| Class: | Input Validation Error |
| CVE: |
CVE-2012-0261 CVE-2012-0262 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 30 2011 12:00AM |
| Updated: | Jan 11 2012 01:30PM |
| Credit: | Peter Osterberg, Ekelow |
| Vulnerable: |
op5 Appliance Server 0 |
| Not Vulnerable: | |
Discussion
op5 Appliance Multiple Remote Command Execution Vulnerabilities
op5 Appliance is prone to multiple remote command-execution vulnerabilities because it fails to properly validate user-supplied input.
An attacker can exploit these issues to execute arbitrary commands within the context of the vulnerable system.
op5 Appliance is prone to multiple remote command-execution vulnerabilities because it fails to properly validate user-supplied input.
An attacker can exploit these issues to execute arbitrary commands within the context of the vulnerable system.
Exploit / POC
op5 Appliance Multiple Remote Command Execution Vulnerabilities
Attackers can exploit these issues with a browser.
The following exploits are available:
Attackers can exploit these issues with a browser.
The following exploits are available:
Solution / Fix
op5 Appliance Multiple Remote Command Execution Vulnerabilities
Solution:
Updates are available. Please see the references for more details.
Solution:
Updates are available. Please see the references for more details.
References
op5 Appliance Multiple Remote Command Execution Vulnerabilities
References:
References: