SiteCubed MailWorks Professional Authentication Bypass Vulnerability
BID:11095
Info
SiteCubed MailWorks Professional Authentication Bypass Vulnerability
| Bugtraq ID: | 11095 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 02 2004 12:00AM |
| Updated: | Sep 02 2004 12:00AM |
| Credit: | Paul Craig <[email protected]> disclosed this vulnerability. |
| Vulnerable: |
SiteCubed MailWorks Professional |
| Not Vulnerable: | |
Discussion
SiteCubed MailWorks Professional Authentication Bypass Vulnerability
MailWorks Professional is reported prone to an authentication bypass vulnerability.
The application uses cookies to store variables that determine the status of the authentication process. An attacker browsing the web application using specially crafted cookie data is able to bypass the authentication process to access the site as an administrative user.
This vulnerability allows a remote attacker to gain administrative access to the affected application.
MailWorks Professional is reported prone to an authentication bypass vulnerability.
The application uses cookies to store variables that determine the status of the authentication process. An attacker browsing the web application using specially crafted cookie data is able to bypass the authentication process to access the site as an administrative user.
This vulnerability allows a remote attacker to gain administrative access to the affected application.
Exploit / POC
SiteCubed MailWorks Professional Authentication Bypass Vulnerability
An exploit is not required. An example cookie header line was provided:
Cookie: auth=1; uId=1
An exploit is not required. An example cookie header line was provided:
Cookie: auth=1; uId=1
Solution / Fix
SiteCubed MailWorks Professional Authentication Bypass Vulnerability
Solution:
Reportedly, the vendor has released a patch to address this issue. However, it has not been confirmed by Symantec at this time. Users of affected packages are urged to contact the vendor to obtain a fix for this vulnerability.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Reportedly, the vendor has released a patch to address this issue. However, it has not been confirmed by Symantec at this time. Users of affected packages are urged to contact the vendor to obtain a fix for this vulnerability.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
SiteCubed MailWorks Professional Authentication Bypass Vulnerability
References:
References: