Adobe IndesignServer 5.5 SOAP Server Arbitrary Script Execution
Posted by deepcore on December 6, 2012 – 5:36 am
This Metasploit module abuses the “RunScript” procedure provided by the SOAP interface of Adobe InDesign Server, to execute arbitrary vbscript (Windows) or applescript(OSX). The exploit drops the payload on the server and must be removed manually.
Link:
Adobe IndesignServer 5.5 SOAP Server Arbitrary Script Execution
Post a reply
You must be logged in to post a comment.