Ice Cold Apps Servers Ultimate 6.0.2(12) does not require authentication for TELNET, SSH, or FTP, which allows remote attackers to execute arbitrary code by uploading PHP scripts.
References
Link | Resource |
---|---|
http://www.vapid.dhs.org/advisories/ultimate-server-android-vulns.html | Exploit Third Party Advisory |
http://www.vapidlabs.com/advisory.php?v=108 | Exploit Third Party Advisory |
http://www.vapid.dhs.org/advisories/ultimate-server-android-vulns.html | Exploit Third Party Advisory |
http://www.vapidlabs.com/advisory.php?v=108 | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 02:01
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.vapid.dhs.org/advisories/ultimate-server-android-vulns.html - Exploit, Third Party Advisory | |
References | () http://www.vapidlabs.com/advisory.php?v=108 - Exploit, Third Party Advisory |
Information
Published : 2018-10-05 06:29
Updated : 2024-11-21 02:01
NVD link : CVE-2013-7465
Mitre link : CVE-2013-7465
CVE.ORG link : CVE-2013-7465
JSON object : View
Products Affected
icecoldapps
- servers_ultimate
CWE
CWE-287
Improper Authentication