NTLM Authorization Proxy Server Insecure Configuration File Permissions Vulnerability
BID:14979
Info
NTLM Authorization Proxy Server Insecure Configuration File Permissions Vulnerability
| Bugtraq ID: | 14979 |
| Class: | Design Error |
| CVE: |
CVE-2005-2962 |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 30 2005 12:00AM |
| Updated: | Jul 12 2009 05:06PM |
| Credit: | Drew Parsons is credited with the discovery of this vulnerability. |
| Vulnerable: |
ntlmaps NTLM Authorization Proxy Server 0.9.9 |
| Not Vulnerable: | |
Discussion
NTLM Authorization Proxy Server Insecure Configuration File Permissions Vulnerability
NTLM Authorization Proxy Server (ntlmaps) is prone to a vulnerability regarding insecure permissions on the configuration file. This issue is due to a configuration error in the post-installation script.
A local attacker can exploit this vulnerability to retrieve the username and password to the Microsoft Windows NT system that ntlmaps connects to.
NTLM Authorization Proxy Server (ntlmaps) is prone to a vulnerability regarding insecure permissions on the configuration file. This issue is due to a configuration error in the post-installation script.
A local attacker can exploit this vulnerability to retrieve the username and password to the Microsoft Windows NT system that ntlmaps connects to.
Exploit / POC
NTLM Authorization Proxy Server Insecure Configuration File Permissions Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
NTLM Authorization Proxy Server Insecure Configuration File Permissions Vulnerability
Solution:
Debian has released security advisory DSA 830-1 addressing this issue. Please see the referenced advisory for further information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Debian has released security advisory DSA 830-1 addressing this issue. Please see the referenced advisory for further information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
NTLM Authorization Proxy Server Insecure Configuration File Permissions Vulnerability
References:
References:
- NTLM Authorization Proxy Server Homepage (ntlmaps)