CVE-2014-6287: remote code execution
Brought to you by:
rejetto
Did not verified myself neither checked wether already fixed but somebody updated exploit-db with new code utilizing old bug of CVE-2014-6287.
See https://www.exploit-db.com/exploits/39161/ and https://www.exploit-db.com/exploits/34668/.
Also see https://sourceforge.net/p/fhfs/tickets/2/.
the referred bug was fixed in 2.3c as stated at https://www.kb.cert.org/vuls/id/251276