<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>DameWare on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/tags/dameware/</link>
    <description>Recent content in DameWare on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Wed, 05 Oct 2016 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/tags/dameware/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>DameWare Vulnerability</title>
      <link>https://insinuator.net/2016/10/dameware-vulnerability/</link>
      <pubDate>Wed, 05 Oct 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/10/dameware-vulnerability/</guid>
      <description>&lt;p&gt;In course of a recent research project, I had a look at SolarWinds DameWare, which is a commercial Remote Access Software product running on Windows Server. I identified a remote file download vulnerability in the download function for the client software that can be exploited remotely and unauthenticated and that allows to download arbitrary files from the server that is running the software.&lt;/p&gt;&#xA;&lt;p&gt;A very simple proof of concept HTTP request to download the C:\Windows\win.ini file of the target machine is the following:&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
