runAV mod_security Remote Command Execution

Discussion in 'News Aggregator' started by Packet Storm, 14 May 2016.

  1. Packet Storm

    Packet Storm Guest

    runAV with mod_security suffers from a command injection vulnerability that leads to privilege escalation providing the clamscan binary is setuid.

    Continue reading...
     

Share This Page

Loading...