vendor:
Webstar 5.4.2
by:
kf
9,3
CVSS
HIGH
Remote Code Execution
78
CWE
Product Name: Webstar 5.4.2
Affected Version From: 5.4.2
Affected Version To: 5.4.2
Patch Exists: NO
Related CWE: N/A
CPE: a:kerio:webstar_5.4.2
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Mac
2006
Kerio Webstar 5.4.2 Remote Root Exploit
This exploit allows an attacker to gain root access to a vulnerable Kerio Webstar 5.4.2 server. The attacker must have access to the webstar user or be in the admin group. The exploit creates a malicious library file and then executes the vulnerable binary, which loads the malicious library and grants the attacker root access.
Mitigation:
Chmod -s the Kerio binaries to prevent exploitation.