vendor:
OpenVAS Manager
by:
Tim Brown
6.5
CVSS
MEDIUM
Command Injection
78
CWE
Product Name: OpenVAS Manager
Affected Version From: OpenVAS Manager <= 1.0.3 and 2.0rc2
Affected Version To: OpenVAS Manager <= 1.0.3 and 2.0rc2
Patch Exists: Yes
Related CWE: CVE-2011-0018
CPE: a:openvas:openvas_manager
Other Scripts:
https://www.infosecmatter.com/nessus-plugin-library/?id=63332, https://www.infosecmatter.com/nessus-plugin-library/?id=53291, https://www.infosecmatter.com/nessus-plugin-library/?id=68244, https://www.infosecmatter.com/nessus-plugin-library/?id=70885, https://www.infosecmatter.com/nessus-plugin-library/?id=58318, https://www.infosecmatter.com/nessus-plugin-library/?id=79286, https://www.infosecmatter.com/nessus-plugin-library/?id=57676, https://www.infosecmatter.com/nessus-plugin-library/?id=53590, https://www.infosecmatter.com/nessus-plugin-library/?id=57435, https://www.infosecmatter.com/list-of-metasploit-windows-exploits-detailed-spreadsheet/
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2011
OpenVAS Manager Command Injection Vulnerability
OpenVAS Manager is vulnerable to command injection due to insufficient validation of user supplied data when processing OMP requests. This vulnerability allows privilege escalation within the OpenVAS Manager but more complex injection may allow arbitrary code to be executed with the privileges of the OpenVAS Manager on vulnerable systems.
Mitigation:
A patch has been supplied by Greenbone Networks which it successfully resolves this vulnerability. New releases of both 1.0.x and 2.0.x have also been created which incorporate this patch.