Vulnerability CVE-2012-5357


Published: 2017-10-30

Description:
Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true, which allows remote attackers to execute arbitrary code with NETWORK SERVICE privileges via crafted XSL data.

See advisories in our WLB2 database:
Topic
Author
Date
High
Ektron 8.02 XSLT Transform Remote Code Execution
Juan vazquez
05.12.2012

Type:

CWE-19

(Data Handling)

CVSS2 => (AV:N/AC:L/Au:N/C:P/I:P/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
7.5/10
6.4/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
Partial
Partial
Affected software
Ektron -> Ektron content management system 

 References:
http://documentation.ektron.com/current/ReleaseNotes/Release8/8.02SP5.htm
https://technet.microsoft.com/library/security/msvr12-016
https://webstersprodigy.net/2012/10/25/cve-2012-5357cve-1012-5358-cool-ektron-xslt-rce-bugs/
https://www.rapid7.com/db/modules/exploit/windows/http/ektron_xslt_exec

Copyright 2024, cxsecurity.com

 

Back to Top