Vulnerabilities > CVE-2000-0322 - Unspecified vulnerability in Redhat Linux 6.2

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
redhat
exploit available
metasploit

Summary

The passwd.php3 CGI script in the Red Hat Piranha Virtual Server Package allows local users to execute arbitrary commands via shell metacharacters.

Vulnerable Configurations

Part Description Count
OS
Redhat
3

Exploit-Db

descriptionRedHat Piranha Virtual Server Package passwd.php3 Arbitrary Command Execution. CVE-2000-0248,CVE-2000-0322. Webapps exploit for php platform
idEDB-ID:16858
last seen2016-02-02
modified2010-10-18
published2010-10-18
reportermetasploit
sourcehttps://www.exploit-db.com/download/16858/
titleRedHat Piranha Virtual Server Package passwd.php3 - Arbitrary Command Execution

Metasploit

descriptionThis module abuses two flaws - a metacharacter injection vulnerability in the HTTP management server of RedHat 6.2 systems running the Piranha LVS cluster service and GUI (rpm packages: piranha and piranha-gui). The vulnerability allows an authenticated attacker to execute arbitrary commands as the Apache user account (nobody) within the /piranha/secure/passwd.php3 script. The package installs with a default user and password of piranha:q which was exploited in the wild.
idMSF:EXPLOIT/LINUX/HTTP/PIRANHA_PASSWD_EXEC
last seen2020-01-10
modified2017-11-08
published2010-02-14
references
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/linux/http/piranha_passwd_exec.rb
titleRedHat Piranha Virtual Server Package passwd.php3 Arbitrary Command Execution

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/86303/piranha_passwd_exec.rb.txt
idPACKETSTORM:86303
last seen2016-12-05
published2010-02-15
reporterpatrick
sourcehttps://packetstormsecurity.com/files/86303/RedHat-Piranha-Virtual-Server-Package-passwd.php3-Arbitrary-Command-Execution.html
titleRedHat Piranha Virtual Server Package passwd.php3 Arbitrary Command Execution

Redhat

advisories
rhsa
idRHSA-2000:014