vendor:
HTTP File Server
by:
Daniele Linguaglossa
9,3
CVSS
HIGH
Remote Command Execution
78
CWE
Product Name: HTTP File Server
Affected Version From: 2.3a
Affected Version To: 2.3c
Patch Exists: Yes
Related CWE: CVE-2014-7226
CPE: 2.3a:hfs:http_file_server
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 8
2014
HTTP File Server 2.3a – 2.3b – 2.3c Remote Command Execution
The latest HTTP File Server (2.3c and maybe prior too) was found to be vulnerable to a remote command execution in the file comment features, because the application did not properly validate uft-8 broken byte representation, in fact during parsing program won't notice that there are multiple invalid representation and when they are printed into the page will get replaced with one of these characters " { . | } " causing a macro to be executed.
Mitigation:
The vendor has released a patch to address this vulnerability.