Infomir Ministra TV Platform is prone to multiple security vulnerabilities.
Successfully exploiting these issues will allow attackers to execute arbitrary code on the device, compromise the application, access or modify data, exploit latent vulnerabilities in the underlying database, bypass security restrictions and bypass authentication mechanism.
Infomir Ministra TV Platform versions prior to 5.4.1 are vulnerable.
The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
| Bugtraq ID: | 108695 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 10 2019 12:00AM |
| Updated: | Jun 10 2019 12:00AM |
| Credit: | Check Point. |
| Vulnerable: | Infomir Ministra TV Platform 5.4 |
| Not Vulnerable: | Infomir Ministra TV Platform 5.4.1 |
References:
- Critical Flaws Found in Widely Used IPTV Software for Online Streaming Services (The Hacker News)
- MINISTRA TV PLATFORM 5.4.1 (Infomir)
- Ministra TV Platform Home Page (Infomir)
- We Decide What You See: Remote Code Execution on a Major IPTV Platform (Check Point)
from SecurityFocus Vulnerabilities http://bit.ly/2F1hJCm
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.