PT-2018-18821 · Efs · Easy File Sharing Web Server
Ihack4Falafel
·
Publicado
2018-04-20
·
Atualizado
2019-10-03
·
CVE-2018-9059
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Easy File Sharing (EFS) Web Server version 7.2
Description
The issue is related to a stack-based buffer overflow that allows remote attackers to execute arbitrary code. This can be achieved by sending a malicious login request to the 'forum.ghp' endpoint.
Recommendations
For Easy File Sharing (EFS) Web Server version 7.2, consider disabling the login functionality to the 'forum.ghp' endpoint until a patch is available. Restrict access to this endpoint to minimize the risk of exploitation.
Exploit
Correção
RCE
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Easy File Sharing Web Server