Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Remote file access >> Avotus mm File Retrieval attempt


Vulnerability Assessment Details

Avotus mm File Retrieval attempt

Vulnerability Assessment Summary
Retrieves /etc/shadow

Detailed Explanation for this Vulnerability Assessment

The script attempts to force the remote Avotus CDR mm service to include
the file /etc/passwd accross the network.

Solution : The vendor has provided a fix for this issue to all customers.
The fix will be included in future shipments and future versions of the product.
If an Avotus customer has any questions about this problem, they should contact
support@avotus.com.

Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: Anonymous

Cables, Connectors

NPS-330AB A DELL 01859D POWEREDGE 2400 SERVER POWER SUPPLY 330W MAX
$12.0
NPS-330AB A DELL 01859D POWEREDGE 2400 SERVER POWER SUPPLY 330W MAX pictureDell Poweredge T110 II
$80.0
Dell Poweredge T110 II pictureDELL PowerEdge R320 E5-2470 2.3Ghz 8 Core, 32GB, 4x 2TB, H310, iDRAC 7, vFlash
$1200.0
DELL PowerEdge R320 E5-2470 2.3Ghz 8 Core, 32GB, 4x 2TB, H310, iDRAC 7, vFlash pictureDell PowerEdge R630 2 x E5-2630v3, PERC H330, 32GB Ram
$2449.0
Dell PowerEdge R630 2 x E5-2630v3, PERC H330, 32GB Ram picture


Discussions

No Discussions have been posted on this vulnerability.