vendor:
FriendlyWeb Dialer
by:
milw0rm.com
8.8
CVSS
HIGH
Read/Write Registry
264
CWE
Product Name: FriendlyWeb Dialer
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2008
Friendly Technologies – Read/Write Registry
This exploit allows an attacker to read and write to the registry and also read files. The exploit uses the FT.RegistryValue and FT.GetTextFile functions to read and write to the registry and read files respectively.
Mitigation:
The user should ensure that the registry is not accessible to malicious actors and that the system is regularly updated with the latest security patches.