RaidenHTTPD < 1.1.34 Multiple Remote Vulnerabilities

critical Nessus Plugin ID 17243

Synopsis

The remote server is vulnerable to several flaws.

Description

The remote host is running RaidenHTTPD 1.1.33 or older.

Ther are various flaws in the remote version of this server which may allow an attacker to disclose the source code of any PHP file hosted on the remote server, or to execute arbitrary code on the remote with the privileges of the remote server (usually SYSTEM).

Solution

Upgrade to RaidenHTTPD 1.1.34 or newer.

Plugin Details

Severity: Critical

ID: 17243

File Name: raiden_http_multiple_vulns.nasl

Version: 1.8

Type: remote

Family: Web Servers

Published: 3/1/2005

Updated: 8/7/2018

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

Exploit Ease: No known exploits are available

Vulnerability Publication Date: 3/2/2005

Reference Information

BID: 12688