vendor:
VSA
by:
Nicolas Grégoire
8,8
CVSS
HIGH
Command Injection
78
CWE
Product Name: VSA
Affected Version From: 8.5.0
Affected Version To: 8.5.0
Patch Exists: Yes
Related CWE: N/A
CPE: a:hp:vsa:8.5.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux, Windows
2020
HP Hydra Client
This exploit is a command injection vulnerability in the HP Hydra client. It allows an attacker to inject arbitrary commands into the vulnerable system. The exploit is triggered by sending a specially crafted packet to the Hydra port (13838) of the vulnerable system. The packet contains a malicious payload which is then executed on the vulnerable system. The payload is a Perl script which opens a port (12345) on the vulnerable system and allows an attacker to connect to it and execute arbitrary commands.
Mitigation:
The best way to mitigate this vulnerability is to patch the vulnerable system with the latest security updates. Additionally, it is recommended to restrict access to the Hydra port (13838) to trusted IP addresses.