SBLIM 'cmpi-base' Remote Command Injection Vulnerability
BID:56731
Info
SBLIM 'cmpi-base' Remote Command Injection Vulnerability
| Bugtraq ID: | 56731 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 29 2012 12:00AM |
| Updated: | Nov 29 2012 12:00AM |
| Credit: | Luca Carettoni and Claudio Criscione through Secunia |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
SBLIM 'cmpi-base' Remote Command Injection Vulnerability
SBLIM is prone to a remote command-injection vulnerability.
A local attacker can exploit this issue to execute arbitrary commands. Successful exploits may compromise the affected computer.
SBLIM 1.3.8 is vulnerable; other versions may also be affected.
SBLIM is prone to a remote command-injection vulnerability.
A local attacker can exploit this issue to execute arbitrary commands. Successful exploits may compromise the affected computer.
SBLIM 1.3.8 is vulnerable; other versions may also be affected.
Exploit / POC
SBLIM 'cmpi-base' Remote Command Injection Vulnerability
Attackers require local interactive access to exploit.
Attackers require local interactive access to exploit.
Solution / Fix
SBLIM 'cmpi-base' Remote Command Injection Vulnerability
Solution:
Vendor updates are available. Please contact the vendor for more information.
Solution:
Vendor updates are available. Please contact the vendor for more information.