7.5
CVSSv2

CVE-2014-7226

Published: 10/10/2014 Updated: 10/10/2014
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The file comment feature in Rejetto HTTP File Server (hfs) 2.3c and previous versions allows remote malicious users to execute arbitrary code by uploading a file with certain invalid UTF-8 byte sequences that are interpreted as executable macro symbols.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

rejetto http file server

Exploits

========================================================== HTTP File Server 23a - 23b - 23c Remote Command Execution # Author : Daniele Linguaglossa # Date: 30/09/2014 # Remote: Yes # Vendor Homepage: rejettocom/ # Software Link: downloadssourceforgenet/hfs/hfs23csrczip # CVE: CVE-2014-7226 # Vendor Hompage: wwwrejet ...
HTTP File Server versions 23a, 23b, and 23c suffer from a remote command execution vulnerability ...