The HCServer service in Hosting Controller HC10 1014 allows an Invalid Pointer Write DoS if attackers can reach the service on port 8794 In addition this can potentially be leveraged for post exploit persistence with SYSTEM privileges, if physical access or malware is involved If a physical attacker or malware can set its own program for the se ...
[+] Credits: John Page (aka hyp3rlinx)
[+] Website: hyp3rlinxaltervistaorg
[+] Source:
hyp3rlinxaltervistaorg/advisories/HC10-HCSERVER-1014-REMOTE-INVALID-POINTER-WRITEtxt
[+] ISR: ApparitionSec
[Vendor]
wwwhostingcontrollercom
[Product]
HC10 HCServer Service 1014
HC10 is a unified hosting automation control panel for web ho ...