AspDotNetStorefront Access Validation Vulnerability
BID:10506
Info
AspDotNetStorefront Access Validation Vulnerability
| Bugtraq ID: | 10506 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 09 2004 12:00AM |
| Updated: | Jun 09 2004 12:00AM |
| Credit: | Discovery is credited to Thomas Ryan. |
| Vulnerable: |
AspDotNetStorefront AspDotNetStorefront PRO 3.3 AspDotNetStorefront AspDotNetStorefront 3.3 |
| Not Vulnerable: | |
Discussion
AspDotNetStorefront Access Validation Vulnerability
AspDotNetStorefront is reportedly prone to an access validation vulnerability that may allow a remote attacker to delete arbitrary contents from a vulnerable Web site. The issue occurs because the 'deleteicon.aspx' script does not validate access before allowing an unprivileged user to delete contents such as icons and images from the site.
Other attacks may be possible as well, however, this has not been confirmed.
AspDotNetStorefront 3.3 is reportedly affected by this issue, however, it is possible that other versions are affected as well.
AspDotNetStorefront is reportedly prone to an access validation vulnerability that may allow a remote attacker to delete arbitrary contents from a vulnerable Web site. The issue occurs because the 'deleteicon.aspx' script does not validate access before allowing an unprivileged user to delete contents such as icons and images from the site.
Other attacks may be possible as well, however, this has not been confirmed.
AspDotNetStorefront 3.3 is reportedly affected by this issue, however, it is possible that other versions are affected as well.
Exploit / POC
AspDotNetStorefront Access Validation Vulnerability
No exploit is required.
The following proof of concept is available:
http://www.example.com/aspdotnetcart/admin/deleteicon.aspx?ProductID=1&Fo
rmImageName=Pic1&size=icon
No exploit is required.
The following proof of concept is available:
http://www.example.com/aspdotnetcart/admin/deleteicon.aspx?ProductID=1&Fo
rmImageName=Pic1&size=icon
Solution / Fix
AspDotNetStorefront Access Validation Vulnerability
Solution:
The vendor has reportedly released an update to address this issue. Please contact the vendor to obtain fixes.
Solution:
The vendor has reportedly released an update to address this issue. Please contact the vendor to obtain fixes.
References
AspDotNetStorefront Access Validation Vulnerability
References:
References:
- AspDotNetStorefront Homepage (AspDotNetStorefront)
- ASPDOTNETSTOREFRONT Improper Session Validation ("Tom"
)