vendor:
Solaris
by:
hdm, ddz
N/A
CVSS
N/A
Command Execution
78
CWE
Product Name: Solaris
Affected Version From: Sun Solaris 8.0
Affected Version To: Sun Solaris 8.0
Patch Exists: NO
Related CWE: CVE-2001-1583, OSVDB-15131, BID-3274
CPE: o:sun:solaris:8.0
Metasploit:
N/A
Other Scripts:
https://www.infosecmatter.com/nessus-plugin-library/?id=11513, https://www.infosecmatter.com/metasploit-module-library/?mm=exploit/solaris/lpd/sendmail_exec, https://www.infosecmatter.com/nessus-plugin-library/?id=93278, https://www.infosecmatter.com/nessus-plugin-library/?id=82632, https://www.infosecmatter.com/nessus-plugin-library/?id=102531, https://www.infosecmatter.com/nessus-plugin-library/?id=30139, https://www.infosecmatter.com/metasploit-module-library/?mm=exploit/solaris/lpd/sendmail_exec, https://www.infosecmatter.com/metasploit-module-library/?mm=exploit/linux/ids/snortbopre, https://www.infosecmatter.com/metasploit-module-library/?mm=exploit/solaris/lpd/sendmail_exec, https://www.infosecmatter.com/metasploit-module-library/?mm=exploit/windows/misc/hp_imc_uam, https://www.infosecmatter.com/nessus-plugin-library/?id=46271, https://www.infosecmatter.com/nessus-plugin-library/?id=84294, https://www.infosecmatter.com/nessus-plugin-library/?id=83856
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Unix, Solaris
2001
Solaris LPD Command Execution
This module exploits an arbitrary command execution flaw in the in.lpd service shipped with all versions of Sun Solaris up to and including 8.0. This module uses a technique discovered by Dino Dai Zovi to exploit the flaw without needing to know the resolved name of the attacking system.
Mitigation:
No known mitigation or remediation for this vulnerability