EasyCafe Security Restriction Bypass Vulnerability
BID:19401
Info
EasyCafe Security Restriction Bypass Vulnerability
| Bugtraq ID: | 19401 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 07 2006 12:00AM |
| Updated: | Aug 08 2006 10:46PM |
| Credit: | Mobin Yazarlou has been credited with the discovery of this vulnerability. |
| Vulnerable: |
TinaSoft EasyCafe 2.2.14 TinaSoft EasyCafe 2.1.7 |
| Not Vulnerable: | |
Discussion
EasyCafe Security Restriction Bypass Vulnerability
EasyCafe is prone to a vulnerability that lets attackers bypass security restrictions.
This issue occurs because the application fails to prevent an attacker from gaining unauthorized access to a client computer.
An attacker can exploit this issue to gain unauthorized access to the client's computer. Other attacks are also possible.
Version 2.1.7 to 2.2.14 are vulnerable to this issue; other versions may also be affected.
EasyCafe is prone to a vulnerability that lets attackers bypass security restrictions.
This issue occurs because the application fails to prevent an attacker from gaining unauthorized access to a client computer.
An attacker can exploit this issue to gain unauthorized access to the client's computer. Other attacks are also possible.
Version 2.1.7 to 2.2.14 are vulnerable to this issue; other versions may also be affected.
Exploit / POC
EasyCafe Security Restriction Bypass Vulnerability
The following proof of concept is available:
The following proof of concept is available:
Solution / Fix
EasyCafe Security Restriction Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].