Ettercap CVE-2014-6396 Arbitrary File Write Vulnerability
BID:71697
Info
Ettercap CVE-2014-6396 Arbitrary File Write Vulnerability
| Bugtraq ID: | 71697 |
| Class: | Design Error |
| CVE: |
CVE-2014-6396 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 16 2014 12:00AM |
| Updated: | Jul 15 2015 12:16AM |
| Credit: | Nick Sampanis |
| Vulnerable: |
Gentoo Linux |
| Not Vulnerable: | |
Discussion
Ettercap CVE-2014-6396 Arbitrary File Write Vulnerability
Ettercap is prone to a vulnerability that lets attackers write or overwrite arbitrary files.
An attacker can exploit this issue to write or overwrite arbitrary files in the context of the web server, which may aid in further attacks.
Ettercap is prone to a vulnerability that lets attackers write or overwrite arbitrary files.
An attacker can exploit this issue to write or overwrite arbitrary files in the context of the web server, which may aid in further attacks.
Exploit / POC
Ettercap CVE-2014-6396 Arbitrary File Write Vulnerability
Attackers can use readily available tools to exploit this issue.
Attackers can use readily available tools to exploit this issue.
Solution / Fix
Ettercap CVE-2014-6396 Arbitrary File Write Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Ettercap CVE-2014-6396 Arbitrary File Write Vulnerability
References:
References: