rejetto forum

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Messages - elektroinside

Pages: 1
1
Hi,

If this has been mentioned before, sorry.

I just found this: http://www.kb.cert.org/vuls/id/251276

Description
CWE-158: Improper Neutralization of Null Byte or NUL Character - CVE-2014-6287
Rejetto HFS versions 2.3, 2.3a, and 2.3b are vulnerable to remote command execution due to a regular expression in parserLib.pas that fails to handle null bytes. Commands that follow a null byte in the search string are executed on the host system.

Might be something to fix though, as i just restarted the entire windows machine with this one...

Thanks!

Pages: 1