9
CVSSv2

CVE-2013-4096

Published: 28/06/2013 Updated: 01/07/2013
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 905
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

ServerAdmin/TestTelnetConnection.jsp in DS3 Authentication Server allows remote authenticated users to execute arbitrary commands via shell metacharacters in the HOST_NAME field.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ds3 authentication server -

Exploits

Original: wwwdigitalsecnet/stuff/explt+advs/DS3AuthServertxt =============================== - Advisory - =============================== Tittle: DS3 Authentication Server - Command Execution (Post Authentication) & other minor issues Risk: High Date: 27May2013 Author: ...