Monkey HTTP Daemon CVE-2013-2183 Local Security Bypass Vulnerability
BID:60589
CVE-2013-2183 |Info
Monkey HTTP Daemon CVE-2013-2183 Local Security Bypass Vulnerability
| Bugtraq ID: | 60589 |
| Class: | Design Error |
| CVE: |
CVE-2013-2183 |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 14 2013 12:00AM |
| Updated: | Mar 19 2015 08:28AM |
| Credit: | Felipe Pena |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Monkey HTTP Daemon CVE-2013-2183 Local Security Bypass Vulnerability
Monkey HTTP Daemon is prone to a local security-bypass vulnerability.
Local attackers can exploit this issue to bypass certain security restrictions and obtain sensitive information which may aid in further attacks.
Monkey HTTP Daemon is prone to a local security-bypass vulnerability.
Local attackers can exploit this issue to bypass certain security restrictions and obtain sensitive information which may aid in further attacks.
Exploit / POC
Monkey HTTP Daemon CVE-2013-2183 Local Security Bypass Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Monkey HTTP Daemon CVE-2013-2183 Local Security Bypass Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Monkey HTTP Daemon CVE-2013-2183 Local Security Bypass Vulnerability
References:
References:
- CVE request: FD leakage for cgi program on Monkey HTTPD (oss-sec)
- FD leakage for cgi program on Monkey HTTPD (Felipe Pena)
- Monkey Homepage (Monkey)