vendor:
DWebPro
by:
Tulpa
7,5
CVSS
HIGH
Remote Binary Execution and Local File Inclusion
22
CWE
Product Name: DWebPro
Affected Version From: 8.4.2
Affected Version To: 8.4.2
Patch Exists: NO
Related CWE: N/A
CPE: a:dwebpro:dwebpro:8.4.2
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7 x86
2016
DWebPro 8.4.2 Remote Binary Execution
When browsing to the demo site installed with DWebPro, hyperlinks to various resources located on the local machine can be accessed. Any file can be accessed on the vulnerable machine by simply replacing the start?file= location. It is important to note however that when browsing to an executable file through this vulnerability, that the web server will indeed run the application locally instead of prompting you for a download. Basic cmd commands can also be executed. These privileges can be escalated to SYSTEM by installing DWebPro as a service and then running the following command.
Mitigation:
Ensure that the web server is not accessible from the internet and that the web server is not running as a service with SYSTEM privileges.