|
|
| |
Credit:
The information has been provided by The Zero Day Initiative (ZDI).
The original article can be found at: http://www.zerodayinitiative.com/advisories/ZDI-08-003.html
|
| |
Vulnerable Systems:
* Backup Exec System Recovery Manager version 7.0
* Backup Exec System Recovery Manager version 7.0.1
The specific flaw exists in the FileUpload class running on the Symantec LiveState Apache Tomcat server. The server is found on TCP port 8080. A malicious HTTP POST request can upload a JSP script to the publicly accessible web directories allowing for arbitrary code execution.
Vendor Response:
Symantec has issued an update to correct this vulnerability. More details can be found at: http://www.symantec.com/avcenter/security/Content/2008.02.04.html
Disclosure Timeline:
2007.12.11 - Vulnerability reported to vendor
2008.02.06 - Coordinated public release of advisory
CVE Information:
CVE-2008-0457
|
|
|