RSS   Vulnerabilities for 'Restorepoint'   RSS

2011-12-13
 
CVE-2011-4202

CWE-264
 

 
The Tadasoft Restorepoint 3.2 evaluation image uses weak permissions (www write access) for unspecified scripts, which allows local users to gain privileges by modifying a script file.

 
 
CVE-2011-4201

CWE-94
 

 
remote_support.cgi in the Tadasoft Restorepoint 3.2 evaluation image allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) pid1 or (2) pid2 parameter in a stop_remote_support action.

 


Copyright 2024, cxsecurity.com

 

Back to Top