Preface: Unify UploadServletLogo -Internet Security Systems

Unify UploadServlet

advICE :Intrusions : 2002597
 FAQ
Oh my gosh, I'm being HACKED!!!
How do I report the hacker to my ISP?
I'm seeing lots of attacks, is this normal?
Summary

Suspicious URL access.

Details

ServletExec has a servlet called "UploadServlet" in its server side classes. UploadServlet, when invoked, allows an attacker to upload any file to any directory on the server. The uploaded file may have code that can later be executed on the server, leading to remote command execution.

 more information
BugtraqID: 1876   Unify eWave ServletExec File Upload Vulnerability
 

 parametric information
URLThe suspicious URL.
accessedIndicates whether the URL was successfully accessed.
codeThe HTTP return code.
argThe argument to the GET command (if any).

 
Version appeared: 2.5 

Privacy Policy |  Copyright Info