Vulnwatch mailing list archives

BakBone Netvault 6.x/7.x Local Stack Buffer Overflow


From: "class101 () HAT-SQUAD com" <class101 () hat-squad com>
Date: Fri, 1 Apr 2005 16:51:53 +0200

According to their website (bakbone.com),
BakBone Netvault 6.x/7.x is a professional backup software with several
offices in the world and some pro customers as Apple, AT&T, Pirelli, LMU,
HP, NIP,NASA, etc....

A Vulnerability exists in the configure.cfg file

advisory: class101.org/netv-locsbof.pdf
poc: class101.org/36/55/op.php

recommendation: to set stricts acl rules on this file.
-------------------------------------------------------------
class101
Jr. Researcher
Hat-Squad.com
-------------------------------------------------------------


Current thread: