PineApp Mail-SeCure 'ldapsyncnow.php' Remote Command Injection Vulnerability
BID:61474
Info
PineApp Mail-SeCure 'ldapsyncnow.php' Remote Command Injection Vulnerability
| Bugtraq ID: | 61474 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 26 2013 12:00AM |
| Updated: | Jul 26 2013 12:00AM |
| Credit: | Dave Weinstein of HP Zero Day Initiative |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
PineApp Mail-SeCure 'ldapsyncnow.php' Remote Command Injection Vulnerability
PineApp Mail-SeCure is prone to a remote command-injection vulnerability.
Successful exploits will result in the execution of arbitrary commands with root privileges in the context of the affected appliance.
PineApp Mail-SeCure is prone to a remote command-injection vulnerability.
Successful exploits will result in the execution of arbitrary commands with root privileges in the context of the affected appliance.
Exploit / POC
PineApp Mail-SeCure 'ldapsyncnow.php' Remote Command Injection Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
PineApp Mail-SeCure 'ldapsyncnow.php' Remote Command Injection Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
PineApp Mail-SeCure 'ldapsyncnow.php' Remote Command Injection Vulnerability
References:
References: