ZDI-20-974: Marvell QConvergeConsole writeObjectToConfigFile Directory Traversal Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the writeObjectToConfigFile method of the GWTTestServiceImpl class. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of SYSTEM.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-20-974?
The severity of ZDI-20-974 is considered critical due to the ability of remote attackers to execute arbitrary code.
How do I fix ZDI-20-974?
To fix ZDI-20-974, update your Marvell QConvergeConsole to the latest version that addresses this vulnerability.
What type of vulnerability is ZDI-20-974?
ZDI-20-974 is a remote code execution vulnerability.
Is authentication required to exploit ZDI-20-974?
Yes, authentication is required to exploit ZDI-20-974, but the existing authentication mechanism can be bypassed.
What products are affected by ZDI-20-974?
ZDI-20-974 affects installations of Marvell QConvergeConsole.