vendor:
Ultrix
by:
ztion
7.5
CVSS
HIGH
dxterm exploit
CWE
Product Name: Ultrix
Affected Version From: Ultrix 4.5
Affected Version To: Ultrix 4.5
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2004
Ultrix 4.5/MIPS dxterm exploit
This exploit targets Ultrix 4.5/MIPS dxterm. It uses a shellcode to gain root access. The shellcode is hardcoded and may need to be tweaked for versions other than 4.5. The exploit copies everything after the last slash, as it expects a path. The exploit has been tested and confirmed to work.
Mitigation:
Patch or upgrade the vulnerable Ultrix version. Limit access to the vulnerable application.