haxx.ml
http://haxx.ml/post/141655340521/all-your-meetings-are-belong-to-us-remote-code CVE-2016-0784
MEDIUM
Apache OpenMeetings Directory Traversal vulnerability
Record summary
CVE-2016-0784 has a selected CVSS score of 6.5 (medium); EIP currently links 1 catalogued exploit.
Description
Directory traversal vulnerability in the Import/Export System Backups functionality in Apache OpenMeetings before 3.1.1 allows remote authenticated administrators to write to arbitrary files via a .. (dot dot) in a ZIP archive entry.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
org.apache.openmeetings:openmeetings-installBrowse Maven / org.apache.openmeetings:openmeetings-install | GitHub Advisory | 1.9.0 to < 3.1.1 · Fixed in 3.1.1 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBApache OpenMeetings 1.9.x < 3.1.0 - '.ZIP' File Directory TraversalExploitDB exploitby Andreas LindhNot analyzed1 file
References
Showing 12 of 14openmeetings.apache.orgConfirmation
http://openmeetings.apache.org/security.html packetstormsecurity.com
http://packetstormsecurity.com/files/136484/Apache-OpenMeetings-3.1.0-Path-Traversal.html [oss-security] 20160325 [CVE-2016-0784] ZIP file path traversalmailing list
http://www.openwall.com/lists/oss-security/2016/03/25/2 20160330 [CVE-2016-0784] Apache OpenMeetings ZIP file path traversalmailing list
http://www.securityfocus.com/archive/1/537929/100/0/threaded github.com
https://github.com/apache/openmeetings github.com
https://github.com/apache/openmeetings/commit/fbab8891d96f3352c37f1be303d9c9a685aa6847 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2016-0784 web.archive.org
https://web.archive.org/web/20160330085718/http://haxx.ml/post/141655340521/all-your-meetings-are-belong-to-us-remote-code web.archive.org
https://web.archive.org/web/20160617190447/https://www.apache.org/dist/openmeetings/3.1.1/CHANGELOG web.archive.org
https://web.archive.org/web/20201209041006/http://www.securityfocus.com/archive/1/537929/100/0/threaded web.archive.org
https://web.archive.org/web/20201221104133/http://packetstormsecurity.com/files/136484/Apache-OpenMeetings-3.1.0-Path-Traversal.html