exploit-db-mirror/platforms/php/dos/24621.txt
Offensive Security 9569f264ec DB: 2015-08-14
191 new exploits
2015-08-14 05:02:47 +00:00

11 lines
No EOL
705 B
Text
Executable file

source: http://www.securityfocus.com/bid/11232/info
The Pinnacle Systems ShowCenter web-based interface is reported prone to a remote denial of service vulnerability.
The issue exists due to a lack of sanity checks performed on the Skin parameter of a ShowCenter script.
It is reported that the affect of this attack will be persistent, any request for the ShowCenter web-based interface received subsequent to an attack will result in 'File or Folder not found' error message, as the interface fails to render.
A remote attacker may exploit this condition to persistently deny service to the ShowCenter web-based interface.
http://www.example.com:8000/ShowCenter/SettingsBase.php?Skin=ATK