Vulnerabilities > CVE-2002-0134 - Unspecified vulnerability in Avirt Gateway Suite 4.2
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN avirt
nessus
Summary
Telnet proxy in Avirt Gateway Suite 4.2 does not require authentication for connecting to the proxy system itself, which allows remote attackers to list file contents of the proxy and execute arbitrary commands via a "dos" command.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Gain a shell remotely |
NASL id | AVIRT_GATEWAY_TELNET.NASL |
description | It was possible to connect to the remote telnet server without a password and to get a command prompt with the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11096 |
published | 2002-08-21 |
reporter | This script is Copyright (C) 2002-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11096 |
title | Avirt Gateway Suite Telnet Proxy Arbitrary Command Execution |
code |
|
References
- http://marc.info/?l=bugtraq&m=101131669102843&w=2
- http://marc.info/?l=bugtraq&m=101131669102843&w=2
- http://marc.info/?l=bugtraq&m=101424723728817&w=2
- http://marc.info/?l=bugtraq&m=101424723728817&w=2
- http://www.iss.net/security_center/static/7915.php
- http://www.iss.net/security_center/static/7915.php
- http://www.securityfocus.com/bid/3901
- http://www.securityfocus.com/bid/3901