SSH Tectia Server Host Authentication Authorization Bypass Vulnerability
BID:15903
Info
SSH Tectia Server Host Authentication Authorization Bypass Vulnerability
| Bugtraq ID: | 15903 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 15 2005 12:00AM |
| Updated: | Dec 15 2005 12:00AM |
| Credit: | This issue was disclosed by the vendor. |
| Vulnerable: |
SSH Communications Security Tectia Server 5.0 |
| Not Vulnerable: |
SSH Communications Security Tectia Server 5.0.1 |
Discussion
SSH Tectia Server Host Authentication Authorization Bypass Vulnerability
SSH Tectia Server is susceptible to an authorization bypass vulnerability. This issue is due to a failure of the application to properly validate login credentials when using host-based authentication. Successful host-based authentication is required to exploit this issue, limiting the sources of attack to computers already configured to connect to the server. Host-based authentication is disabled by default in vulnerable servers.
This issue allows remote attackers to logon to computers using the vulnerable application with illegitimate credentials. Privilege escalation and unauthorized access may be possible.
SSH Tectia Server is susceptible to an authorization bypass vulnerability. This issue is due to a failure of the application to properly validate login credentials when using host-based authentication. Successful host-based authentication is required to exploit this issue, limiting the sources of attack to computers already configured to connect to the server. Host-based authentication is disabled by default in vulnerable servers.
This issue allows remote attackers to logon to computers using the vulnerable application with illegitimate credentials. Privilege escalation and unauthorized access may be possible.
Exploit / POC
SSH Tectia Server Host Authentication Authorization Bypass Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
SSH Tectia Server Host Authentication Authorization Bypass Vulnerability
Solution:
The vendor has released an advisory, along with version 5.0.1 of Tectia Server to address this issue:
SSH Communications Security Tectia Server 5.0
Solution:
The vendor has released an advisory, along with version 5.0.1 of Tectia Server to address this issue:
SSH Communications Security Tectia Server 5.0
-
SSH Communications Tectia Server 5.0.1
http://www.ssh.com/support/downloads/tectia-server/updates-and-package s-5-0.html
References
SSH Tectia Server Host Authentication Authorization Bypass Vulnerability
References:
References:
- Release Notes for SSH Tectia Server (A/F/T) 5.0.1 (SSH Communications Security)
- SSH Tectia Server 5.0.0 Host-Based Authentication Vulnerability (SSH Communications Security)
- SSH Tectia Server Product Page (SSH Communications Security)