vendor:
Vesta Control Panel
by:
High-Tech Bridge Security Research Lab
8.8
CVSS
HIGH
OS Command Injection
78
CWE
Product Name: Vesta Control Panel
Affected Version From: 2000.9.8
Affected Version To: 2000.9.8
Patch Exists: YES
Related CWE: CVE-2015-4117
CPE: vestacp.com/vesta_control_panel
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2015
Advisory ID: HTB23261
High-Tech Bridge Security Research Lab discovered critical vulnerability in Vesta Control Panel, which can be exploited to execute arbitrary system commands and gain complete access to the vulnerable system. The vulnerability exists due to insufficient filtration of user-input passed via the 'backup' HTTP GET parametre to '/list/backup/index.php' before using it in the PHP 'exec()' function. A remote authenticated attacker can inject arbitrary commands and execute them on the system with privileges of the default Vesta Control Panel 'admin' account.
Mitigation:
Fixed by Vendor