Vulnerabilities > CVE-2013-0232 - Unspecified vulnerability in Zoneminder
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
includes/functions.php in ZoneMinder Video Server 1.24.0, 1.25.0, and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) runState parameter in the packageControl function; or (2) key or (3) command parameter in the setDeviceStatusX10 function.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 6 |
Exploit-Db
description | ZoneMinder Video Server packageControl Command Execution. CVE-2013-0232,CVE-2013-0332. Remote exploit for unix platform |
file | exploits/unix/remote/24310.rb |
id | EDB-ID:24310 |
last seen | 2016-02-02 |
modified | 2013-01-24 |
platform | unix |
port | |
published | 2013-01-24 |
reporter | metasploit |
source | https://www.exploit-db.com/download/24310/ |
title | ZoneMinder Video Server packageControl Command Execution |
type | remote |
Metasploit
description | This module exploits a command execution vulnerability in ZoneMinder Video Server version 1.24.0 to 1.25.0 which could be abused to allow authenticated users to execute arbitrary commands under the context of the web server user. The 'packageControl' function in the 'includes/actions.php' file calls 'exec()' with user controlled data from the 'runState' parameter. |
id | MSF:EXPLOIT/UNIX/WEBAPP/ZONEMINDER_PACKAGECONTROL_EXEC |
last seen | 2020-06-01 |
modified | 2019-01-10 |
published | 2013-01-22 |
references | |
reporter | Rapid7 |
source | https://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/unix/webapp/zoneminder_packagecontrol_exec.rb |
title | ZoneMinder Video Server packageControl Command Execution |
Nessus
NASL family | Debian Local Security Checks |
NASL id | DEBIAN_DSA-2640.NASL |
description | Multiple vulnerabilities were discovered in zoneminder, a Linux video camera security and surveillance solution. The Common Vulnerabilities and Exposures project identifies the following problems : - CVE-2013-0232 Brendan Coles discovered that zoneminder is prone to an arbitrary command execution vulnerability. Remote (authenticated) attackers could execute arbitrary commands as the web server user. - CVE-2013-0332 zoneminder is prone to a local file inclusion vulnerability. Remote attackers could examine files on the system running zoneminder. |
last seen | 2020-03-17 |
modified | 2013-03-15 |
plugin id | 65556 |
published | 2013-03-15 |
reporter | This script is Copyright (C) 2013-2020 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/65556 |
title | Debian DSA-2640-1 : zoneminder - several issues |
code |
|
References
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=698910
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=698910
- http://itsecuritysolutions.org/2013-01-22-ZoneMinder-Video-Server-arbitrary-command-execution-vulnerability/
- http://itsecuritysolutions.org/2013-01-22-ZoneMinder-Video-Server-arbitrary-command-execution-vulnerability/
- http://www.debian.org/security/2013/dsa-2640
- http://www.debian.org/security/2013/dsa-2640
- http://www.exploit-db.com/exploits/24310
- http://www.exploit-db.com/exploits/24310
- http://www.openwall.com/lists/oss-security/2013/01/28/2
- http://www.openwall.com/lists/oss-security/2013/01/28/2
- http://www.osvdb.org/89529
- http://www.osvdb.org/89529
- http://www.zoneminder.com/forums/viewtopic.php?f=29&t=20771
- http://www.zoneminder.com/forums/viewtopic.php?f=29&t=20771