vendor:
by:
LMH, Kevin Finisterre
7.5
CVSS
HIGH
File Overwrite
CWE
Product Name:
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2006
Ruby Exploit
This is a Ruby exploit that overwrites a target binary with a shell path and sets rogue permissions. It is used to gain unauthorized access to a system.
Mitigation:
Ensure that the binary doesn't drop privileges and that proper permissions are set for the target binary.