The cmdjob utility in Autodesk Backburner 3.0.2 allows remote attackers to execute arbitrary commands on render servers by queueing jobs that contain these commands. NOTE: this is only a vulnerability in environments in which the administrator has not followed documentation that outlines the security risks of operating Backburner on untrusted networks.
Weaknesses in this category are typically introduced during the configuration of the software.
Link | Tags |
---|---|
http://securitytracker.com/id?1018686 | vdb entry |
http://www.securityfocus.com/archive/1/479193/100/0/threaded | mailing list |
http://securityreason.com/securityalert/3132 | third party advisory |
http://secunia.com/advisories/26797 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/36582 | vdb entry |
http://www.securityfocus.com/bid/25590 | vdb entry |
http://www.symantec.com/content/en/us/enterprise/research/SYMSA-2007-008.txt |