Description
An OS command injection vulnerability exists in WebTester version 5.x via the install2.php installation script. The parameters cpusername, cppassword, and cpdomain are passed directly to shell commands without sanitization. A remote unauthenticated attacker can exploit this flaw by sending a crafted HTTP POST request, resulting in arbitrary command execution on the underlying system with web server privileges.
Problem types
CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Product status
5.0
Credits
bcoles
References
raw.githubusercontent.com/...s/unix/webapp/webtester_exec.rb
sourceforge.net/p/webtesteronline/bugs/3/
www.exploit-db.com/exploits/29132
advisories.checkpoint.com/...public/2014/cpai-2014-1620.html
www.vulncheck.com/...ries/webtester-unauth-command-execution