CVE-2013-4096

DS3 Authentication Server - Improper Input Validation

Title source: rule

Description

ServerAdmin/TestTelnetConnection.jsp in DS3 Authentication Server allows remote authenticated users to execute arbitrary commands via shell metacharacters in the HOST_NAME field.

Exploits (1)

exploitdb WRITEUP
webappshardware
https://www.exploit-db.com/exploits/25976

Scores

EPSS 0.0403
EPSS Percentile 88.5%

Details

CWE
CWE-20
Status published
Products (1)
ds3/authentication_server
Published Jun 28, 2013
Tracked Since Feb 18, 2026