Ice Cold Apps Servers Ultimate 6.0.2(12) does not require authentication for TELNET, SSH, or FTP, which allows remote attackers to execute arbitrary code by uploading PHP scripts.
References
Link | Resource |
---|---|
http://www.vapidlabs.com/advisory.php?v=108 | Exploit Third Party Advisory |
http://www.vapid.dhs.org/advisories/ultimate-server-android-vulns.html | Exploit Third Party Advisory |
Configurations
Information
Published : 2018-10-04 23:29
Updated : 2019-01-08 06:44
NVD link : CVE-2013-7465
Mitre link : CVE-2013-7465
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
icecoldapps
- servers_ultimate