PT-2008-2506 · Red Hat+1 · Red Hat Directory Server+1

Richard Megginson

+1

·

Publicado

2008-04-16

·

Atualizado

2022-02-03

·

CVE-2008-0892

CVSS v2.0

9.0

Alta

VetorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Red Hat Directory Server versions 8.0 EL4 and EL5
Description The issue concerns the replication monitor CGI script, specifically the repl-monitor-cgi.pl script, which allows remote attackers to execute arbitrary commands.
Recommendations For Red Hat Directory Server versions 8.0 EL4 and EL5, consider disabling the repl-monitor-cgi.pl script as a temporary workaround until a patch is available. Restrict access to the replication monitor CGI script to minimize the risk of exploitation.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-0892
HPSBUX02324
RHSA-2008:0199
RHSA-2008:0201

Produtos afetados

Hp-Ux
Red Hat Directory Server