vendor:
RaidenHTTPD
by:
rgod
7.5
CVSS
HIGH
Command Injection
78
CWE
Product Name: RaidenHTTPD
Affected Version From: RaidenHTTPD 2.0.19
Affected Version To: RaidenHTTPD 2.0.19
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2007
rem raidenhttpdudo.cmd
This is a command injection exploit for RaidenHTTPD 2.0.19. It allows an unauthenticated attacker to execute arbitrary commands on the target system.
Mitigation:
Update to a patched version of RaidenHTTPD or implement input validation to prevent command injection.