ScriptLogic Arbitrary Registry Modification Vulnerability
BID:7475
Info
ScriptLogic Arbitrary Registry Modification Vulnerability
| Bugtraq ID: | 7475 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 30 2003 12:00AM |
| Updated: | Apr 30 2003 12:00AM |
| Credit: | Discovery of this vulnerability credited to CERT/CC. |
| Vulnerable: |
ScriptLogic Corporation ScriptLogic 4.1 |
| Not Vulnerable: |
ScriptLogic Corporation ScriptLogic 4.15 ScriptLogic Corporation ScriptLogic 4.14 |
Discussion
ScriptLogic Arbitrary Registry Modification Vulnerability
A vulnerability has been reported for ScriptLogic where arbitrary registry modifications may be made by remote attackers. A requesting client may ask a ScriptLogic server to modify arbitrary registry keys.
A vulnerability has been reported for ScriptLogic where arbitrary registry modifications may be made by remote attackers. A requesting client may ask a ScriptLogic server to modify arbitrary registry keys.
Exploit / POC
ScriptLogic Arbitrary Registry Modification Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
ScriptLogic Arbitrary Registry Modification Vulnerability
Solution:
The vendor has released version 4.14 and later to address this issue.
ScriptLogic Corporation ScriptLogic 4.1
Solution:
The vendor has released version 4.14 and later to address this issue.
ScriptLogic Corporation ScriptLogic 4.1
-
ScriptLogic Corporation ScriptLogic 4.15
http://www.scriptlogic.com/common/download-license.asp?product=ScriptL ogic&version=4.15&link=/eng/download-locations-sl4.asp
References
ScriptLogic Arbitrary Registry Modification Vulnerability
References:
References:
- ScriptLogic Corporation (ScriptLogic Corporation)
- Vulnerability Note VU#609137 (CERT/CC)