Metasploit mailing list archives

BakBone Netvault 6.x/7.x Local Stack Buffer Overflow


From: class101 at hat-squad.com (class101 () HAT-SQUAD com)
Date: Fri, 1 Apr 2005 16:45:22 +0200

According to their website (bakbone.com), 
BakBone Netvault 6.x/7.x is a professional backup software with several offices in the world and some pro customers as 
Apple, AT&T, Pirelli, LMU, HP, NIP,NASA, etc....

A Vulnerability exists in the configure.cfg file

advisory: class101.org/netv-locsbof.pdf
poc: class101.org/36/55/op.php

recommendation: to set stricts acl rules on this file.
-------------------------------------------------------------
class101
Jr. Researcher
Hat-Squad.com
-------------------------------------------------------------
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.metasploit.com/pipermail/framework/attachments/20050401/25312aae/attachment.htm>


Current thread: