Watchfire AppScan QA Remote Buffer Overflow Vulnerability
BID:15873
Info
Watchfire AppScan QA Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 15873 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 15 2005 12:00AM |
| Updated: | Dec 15 2005 12:00AM |
| Credit: | Discovered by Mariano Nunez Di Croce <[email protected]>. |
| Vulnerable: |
Watchfire AppScan QA 5.0.609 Subscription 7 Watchfire AppScan QA 5.0.134 Watchfire AppScan QA 5.0 |
| Not Vulnerable: | |
Discussion
Watchfire AppScan QA Remote Buffer Overflow Vulnerability
AppScan QA is prone to a buffer overflow vulnerability.
The vulnerability presents itself when the application handles a malformed HTTP 401 (Unauthorized) response.
A successful attack may facilitate arbitrary code execution. Exploitation of this vulnerability may allow an attacker to gain unauthorized access to the computer in the context of the application.
AppScan QA 5.0.609 Subscription 7 and 5.0.134 were reported to be vulnerable. Other versions may be affected as well.
AppScan QA is prone to a buffer overflow vulnerability.
The vulnerability presents itself when the application handles a malformed HTTP 401 (Unauthorized) response.
A successful attack may facilitate arbitrary code execution. Exploitation of this vulnerability may allow an attacker to gain unauthorized access to the computer in the context of the application.
AppScan QA 5.0.609 Subscription 7 and 5.0.134 were reported to be vulnerable. Other versions may be affected as well.
Exploit / POC
Watchfire AppScan QA Remote Buffer Overflow Vulnerability
Exploit code has been provided:
Exploit code has been provided:
Solution / Fix
Watchfire AppScan QA Remote Buffer Overflow Vulnerability
Solution:
It was reported that AppScan QA Subscription 8 is not vulnerable to this issue. This could not be confirmed by Symantec. Please contact the vendor for more information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
It was reported that AppScan QA Subscription 8 is not vulnerable to this issue. This could not be confirmed by Symantec. Please contact the vendor for more information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Watchfire AppScan QA Remote Buffer Overflow Vulnerability
References:
References:
- AppScan Product Page (Watchfire)
- CYBSEC - Security Advisory: Watchfire AppScan QA Remote Code Execution (=?ISO-8859-1?Q?Mariano_Nu=F1ez_Di_Croce?=
)