PT-2005-3658 · Unknown · Looking Glass

Retrogod

·

Published

2005-09-02

·

Updated

2017-07-11

·

CVE-2005-2777

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Looking Glass version 20040427
Description The issue allows remote attackers to execute arbitrary commands via shell metacharacters in the DNS lookup query field. This can lead to unauthorized access and control of the system.
Recommendations For Looking Glass version 20040427, consider restricting access to the DNS lookup query field to minimize the risk of exploitation. As a temporary workaround, avoid using shell metacharacters in the DNS lookup query field until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-2777

Affected Products

Looking Glass