ParaChat Directory Traversal Vulnerability
BID:11272
Info
ParaChat Directory Traversal Vulnerability
| Bugtraq ID: | 11272 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 28 2004 12:00AM |
| Updated: | Sep 28 2004 12:00AM |
| Credit: | "Donato Ferrante" <[email protected]> disclosed this vulnerability. |
| Vulnerable: |
ParaChat ParaChat Server 5.5 |
| Not Vulnerable: | |
Discussion
ParaChat Directory Traversal Vulnerability
It is reported that ParaChat is susceptible to a directory traversal vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied input data.
This vulnerability allows remote attackers to retrieve the contents of arbitrary, potentially sensitive files located on the serving computer with the credentials of the ParaChat server process.
Version 5.5 is reported susceptible to this vulnerability. Other versions may also be affected.
It is reported that ParaChat is susceptible to a directory traversal vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied input data.
This vulnerability allows remote attackers to retrieve the contents of arbitrary, potentially sensitive files located on the serving computer with the credentials of the ParaChat server process.
Version 5.5 is reported susceptible to this vulnerability. Other versions may also be affected.
Exploit / POC
ParaChat Directory Traversal Vulnerability
An exploit is not required. An example URI sufficient to exploit this vulnerability was provided:
http://www.example.com:7877/..%5C/..%5C/
An exploit is not required. An example URI sufficient to exploit this vulnerability was provided:
http://www.example.com:7877/..%5C/..%5C/
Solution / Fix
ParaChat Directory Traversal Vulnerability
Solution:
It is reported that version 5.5 of ParaChat has been patched by the vendor, and is no longer susceptible to this vulnerability. Downloads of ParaChat after 29 Sept 2004 may not be vulnerable to this issue, but this has not been confirmed by either the vendor, or Symantec.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
It is reported that version 5.5 of ParaChat has been patched by the vendor, and is no longer susceptible to this vulnerability. Downloads of ParaChat after 29 Sept 2004 may not be vulnerable to this issue, but this has not been confirmed by either the vendor, or Symantec.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
ParaChat Directory Traversal Vulnerability
References:
References:
- ParaChat Homepage (ParaChat)
- directory traversal in ParaChat Server 5.5 ("Donato Ferrante"
) - Re: directory traversal in ParaChat Server 5.5 (Donato Ferrante
)