SecOpsNews / news

RSS items as GitHub Issues for the discerning engineering leader or security professional
MIT License
34 stars 0 forks source link

[FullDisclosure] FedEx Ship Manager (FSM) v3704 Insecure Use of .NET Remoting #12682

Closed github-actions[bot] closed 1 year ago

github-actions[bot] commented 1 year ago

Posted by Harrison Neal on Apr 04

Vulnerable Software Download URL:

https://www.fedex.com/en-us/shipping/ship-manager/software.html#tab-4

FSM 3704 (and some earlier versions) use .NET Remoting in a way that can

lead to unauthenticated remote code execution attacks as SYSTEM. Tools that

can successfully attack affected services are freely available.

Administrators should block or otherwise limit access to TCP ports opened

by services installed by this software wherever possible.

https://seclists.org/fulldisclosure/2023/Apr/0

github-actions[bot] commented 1 year ago

This issue is stale because it has been open 1 day with no activity. Remove stale label or comment or this will be closed in 1 day.

github-actions[bot] commented 1 year ago

This issue was closed because it has been stale with no activity.