Bugtraq mailing list archives
Infosec.20000617.panda.a
From: ian.vitek () INFOSEC SE (Ian Vitek)
Date: Sat, 17 Jun 2000 12:10:17 +0100
Infosec Security Vulnerability Report No: Infosec.20000617.panda.a ============================ Vulnerability Summary --------------------- Problem: Panda Antivirus has an open console at port 2001 Threat: Remotely run any command on a Netware console Platform: Confirmed on Novell Netware Solution: The fix is included on the June version of the GVI disk Vulnerability Description ------------------------- Customers to Panda Antivirus may have a Panda Antivirus console open on port 2001. This Panda console is open to everyone who has access to this port. You are not prompted for authentication. Example: foo:/# nc server 2001 Panda Antivirus NetWare Servers Copyright 1998(c) Panda Software Version 2.00 Last upgrade: 10/04/2000 FS1 (#1): help ANALYZE CMD HELP LOAD RELOADCFG UPDATE UNLOAD VER FS1 (#1): help cmd Make a console command of Netware CMD [Command NetWare] Example: CMD LOAD MONITOR Any Netware command can be executed with the CMD command (i.e. unloading and loading REMOTE.NLM with a password of your choice.) Solution -------- PCM International says that they have fixed the hole on the June version of the GVI disk (labeled M6/A00) Additional Information ---------------------- Only the Netware version has been confirmed. Infosec have not had the opportunity to test the Windows version of Panda Antivirus. //Ian Vitek ian.vitek () infosec se ------------------------------- Infosec is a Swedish based tiger team that has worked with computer-related security since 1982 and done network penetration tests and technical audits since 1996. Infosec welcomes its newcomers David, Rikard and Anders. Infosec is now hiring in Sweden and the United Kingdom. Call Christer Stafferod on +46-(0)8-6621070 ( mailto:christer.stafferod () infosec se ) for more information.
Current thread:
- Re: Sendmail local root exploit on linux 2.2.x, (continued)
- Re: Sendmail local root exploit on linux 2.2.x Christophe GRENIER (Jun 08)
- arprelay: a tool to edit TCP connections in a LAN Felix von Leitner (Jun 09)
- Re: Sendmail local root exploit on linux 2.2.x Alan Iwi (Jun 12)
- Splitvt exploit syzop (Jun 14)
- Re: Splitvt exploit Joey Hess (Jun 14)
- Re: Splitvt exploit Andrey Savochkin (Jun 16)
- Re: Splitvt exploit Joey Hess (Jun 16)
- NAI WebShield SMTP does not scan base64 encoding chris.paget () ANALYSYS COM (Jun 20)
- Re: Splitvt exploit Joey Hess (Jun 14)
- Re: Splitvt exploit Kris Kennaway (Jun 15)
- Re-release of IIS 5.0 Patch for MS00-031 Microsoft Product Security (Jun 16)
- Infosec.20000617.panda.a Ian Vitek (Jun 17)
- Reliable Software Technologies releases new e-mail virus protection software Tim Hollebeek (Jun 14)
- Microsoft Security Bulletin (MS00-041) Microsoft Product Security (Jun 14)