FatWire Content Server Authentication Bypass Vulnerability
BID:18958
CVE-2006-3679 |Info
FatWire Content Server Authentication Bypass Vulnerability
| Bugtraq ID: | 18958 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 12 2006 12:00AM |
| Updated: | Jul 13 2006 11:38PM |
| Credit: | Alberto Moro is credited with discovering this vulnerability. |
| Vulnerable: |
FatWire Content Server 5.5 |
| Not Vulnerable: | |
Discussion
FatWire Content Server Authentication Bypass Vulnerability
FatWire Content Server is prone to a remote authentication-bypass vulnerability. This issue is due to the application's failure to properly ensure that remote web-based users are properly authenticated.
This issue allows remote attackers to gain administrative access to an affected portal. This may aid them in further attacks.
FatWire Content Server is prone to a remote authentication-bypass vulnerability. This issue is due to the application's failure to properly ensure that remote web-based users are properly authenticated.
This issue allows remote attackers to gain administrative access to an affected portal. This may aid them in further attacks.
Exploit / POC
FatWire Content Server Authentication Bypass Vulnerability
Attackers can exploit this issue via a web client.
Attackers can exploit this issue via a web client.
Solution / Fix
FatWire Content Server Authentication Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue issue. If you feel we are in error or if you are aware of more recent information, please email us at: [email protected]:[email protected].
Reports indicate that the vendor may have released updates to address this issue. Please contact the vendor for details.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue issue. If you feel we are in error or if you are aware of more recent information, please email us at: [email protected]:[email protected].
Reports indicate that the vendor may have released updates to address this issue. Please contact the vendor for details.
References
FatWire Content Server Authentication Bypass Vulnerability
References:
References:
- FatWire Homapage (FatWire)
- S21Sec-032-en: Vulnerability in Fatwire Content Server (Alberto Moro)