Avenger`s News System (ANS) plugin allows remote attacker to execute commands
| ans-plugin-execute-commands (8256) |
Description:
Avenger's News System (ANS) could allow a remote attacker to execute arbitrary commands on the system, caused by improper filtering of user-supplied input in the ans.pl script. A remote attacker can send a specially-crafted URL request containing "dot dot" sequences (/../) followed by arbitrary shell metacharacters to execute arbitrary commands on the system.
Consequences:
Gain Privileges
Remedy:
No remedy available as of February 6, 2010.
References:
- Avenger's News System Web site: Avenger's News System.
- BugTraq Mailing List, Thu Feb 21 2002 - 01:57:46 CST: "Cthulhu xhAze" - Command execution in Ans.pl.
- BID-4147: Avenger's News System Directory Traversal Vulnerability
- BID-4149: Avenger's News System Remote Command Execution Vulnerability
- CVE-2002-0306: ans.pl in Avenger's News System (ANS) 2.11 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the p (plugin) parameter.
- CVE-2002-0307: Directory traversal vulnerability in ans.pl in Avenger's News System (ANS) 2.11 and earlier allows remote attackers to determine the existence of arbitrary files or execute any Perl program on the system via a .. (dot dot) in the p parameter, which reads the target file and attempts to execute the line using Perl's eval function.
Platforms Affected:
- Avenger Avenger's News System (ANS) 2.11 and prior
Reported:
Feb 20, 2002
The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.
For corrections or additions please email xforce@iss.net
