CVE-2014-6287 Information
Feb 14, 2021
cve
Description
The findMacroMarker function in parserLib.pas in Rejetto HTTP File Server (aks HFS or HttpFileServer) 2.3x before 2.3c allows remote attackers to execute arbitrary programs via a 00 sequence in a search action.
Reference
http://packetstormsecurity.com/files/128243/HttpFileServer-2.3.x-Remote-Command-Execution.html http://packetstormsecurity.com/files/135122/Rejetto-HTTP-File-Server-2.3.x-Remote-Code-Execution.html http://www.kb.cert.org/vuls/id/251276 https://github.com/rapid7/metasploit-framework/pull/3793 https://www.exploit-db.com/exploits/39161/
Share on: