Key Systems Electronic Key Lockers Command Injection and Authentication Bypass Vulnerabilities
BID:55844
Info
Key Systems Electronic Key Lockers Command Injection and Authentication Bypass Vulnerabilities
| Bugtraq ID: | 55844 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 09 2012 12:00AM |
| Updated: | Oct 09 2012 12:00AM |
| Credit: | Travis Lee |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Key Systems Electronic Key Lockers Command Injection and Authentication Bypass Vulnerabilities
Key Systems Electronic Key Lockers are prone to an authentication-bypass vulnerability and a command-injection vulnerability.
Exploiting these issues could allow a remote attacker to bypass authentication or execute arbitrary commands in the context of the affected device.
Key Systems Electronic Key Lockers are prone to an authentication-bypass vulnerability and a command-injection vulnerability.
Exploiting these issues could allow a remote attacker to bypass authentication or execute arbitrary commands in the context of the affected device.
Exploit / POC
Key Systems Electronic Key Lockers Command Injection and Authentication Bypass Vulnerabilities
Attackers can use readily available tools to exploit the issues.
Attackers can use readily available tools to exploit the issues.