SMB2WWW Remote Command Execution Vulnerability
BID:6313
Info
SMB2WWW Remote Command Execution Vulnerability
| Bugtraq ID: | 6313 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 04 2002 12:00AM |
| Updated: | Dec 04 2002 12:00AM |
| Credit: | Vulnerability first reported in a Debian advisory. |
| Vulnerable: |
SMB2WWW SMB2WWW 980804 SMB2WWW SMB2WWW 980802 SMB2WWW SMB2WWW 980727 SMB2WWW SMB2WWW 980427 |
| Not Vulnerable: | |
Discussion
SMB2WWW Remote Command Execution Vulnerability
A vulnerability has been reported for SMB2WWW. An attacker may be able to exploit this vulnerability to execute commands with the privileges of the 'www-data' user on a vulnerable host.
Precise technical details of this vulnerability are currently unknown.
A vulnerability has been reported for SMB2WWW. An attacker may be able to exploit this vulnerability to execute commands with the privileges of the 'www-data' user on a vulnerable host.
Precise technical details of this vulnerability are currently unknown.
Exploit / POC
SMB2WWW Remote Command Execution Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
SMB2WWW Remote Command Execution Vulnerability
Solution:
The following fixes are available:
SMB2WWW SMB2WWW 980804
Solution:
The following fixes are available:
SMB2WWW SMB2WWW 980804
-
Debian smb2www_980804-16.1_all.deb
Debian GNU/Linux 3.0
http://security.debian.org/pool/updates/main/s/smb2www/smb2www_980804- 16.1_all.deb -
Debian smb2www_980804-8.1_all.deb
Debian GNU/Linux 2.2
http://security.debian.org/pool/updates/main/s/smb2www/smb2www_980804- 8.1_all.deb
References
SMB2WWW Remote Command Execution Vulnerability
References:
References: