vendor:
Agent Tesla Botnet
by:
n4pst3r
7.5
CVSS
HIGH
Information Disclosure Vulnerability
200
CWE
Product Name: Agent Tesla Botnet
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE: N/A
CPE: a:agent_tesla:agent_tesla
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 10, Debian 7
2018
Agent Tesla Botnet – Information Disclosure Disclosure Vulnerability
Agent Tesla Botnet is vulnerable to an Information Disclosure Vulnerability due to the lack of authentication and authorization checks in the server_processing.php script. An attacker can exploit this vulnerability by sending a crafted HTTP request to the vulnerable script with the table, primary and clmns parameters set to extract full passwords and keystrokes from the server.
Mitigation:
Authentication and authorization checks should be implemented in the server_processing.php script.