vendor:
Internet Access Manager
by:
Infam0us Gr0up - Securiti Research
8.8
CVSS
HIGH
Command Injection
78
CWE
Product Name: Internet Access Manager
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2005
FTP Internet Access Manager Command Exploit
This exploit allows an attacker to delete any file type from the directory in which the Internet Access Manager is installed. The attacker must have valid credentials to the FTP server in order to exploit this vulnerability.
Mitigation:
Ensure that all users have strong passwords and that only trusted users have access to the FTP server.