eFiction Index.PHP Authentication Bypass Vulnerability
BID:19717
CVE-2006-4427 |Info
eFiction Index.PHP Authentication Bypass Vulnerability
| Bugtraq ID: | 19717 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 25 2006 12:00AM |
| Updated: | Aug 31 2006 07:53PM |
| Credit: | Vipsta is credited with the discovery of this vulnerability. |
| Vulnerable: |
eFiction Project eFiction 2.0.6 eFiction Project eFiction 2.0 eFiction Project eFiction 1.1 eFiction Project eFiction 1.0 |
| Not Vulnerable: |
eFiction Project eFiction 2.0.7 |
Discussion
eFiction Index.PHP Authentication Bypass Vulnerability
eFiction is prone to an authentication-bypass vulnerability because the affected script fails to verify cookies properly and to perform other authentication checks. This lets a malicious user simply create an appropriately named cookie that allows administrative access to the application.
An attacker can exploit this issue to bypass authentication and gain admin access to the affected application. This could aid in further attacks on the affected computer.
Versions prior to 2.0.7 are affected; other versions may also be vulnerable.
eFiction is prone to an authentication-bypass vulnerability because the affected script fails to verify cookies properly and to perform other authentication checks. This lets a malicious user simply create an appropriately named cookie that allows administrative access to the application.
An attacker can exploit this issue to bypass authentication and gain admin access to the affected application. This could aid in further attacks on the affected computer.
Versions prior to 2.0.7 are affected; other versions may also be vulnerable.
Exploit / POC
eFiction Index.PHP Authentication Bypass Vulnerability
Attackers can exploit this issue via a web client.
Attackers can exploit this issue via a web client.
Solution / Fix
eFiction Index.PHP Authentication Bypass Vulnerability
Solution:
The vendor has released a patch fix to address this issue; please see the reference section for details.
eFiction Project eFiction 1.0
eFiction Project eFiction 1.1
eFiction Project eFiction 2.0
eFiction Project eFiction 2.0.6
Solution:
The vendor has released a patch fix to address this issue; please see the reference section for details.
eFiction Project eFiction 1.0
-
efiction patch08-24-06.zip
http://efiction.org/downloads/patch08-24-06.zip
eFiction Project eFiction 1.1
-
efiction patch08-24-06.zip
http://efiction.org/downloads/patch08-24-06.zip
eFiction Project eFiction 2.0
-
efiction patch08-24-06.zip
http://efiction.org/downloads/patch08-24-06.zip
eFiction Project eFiction 2.0.6
-
efiction patch08-24-06.zip
http://efiction.org/downloads/patch08-24-06.zip
References
eFiction Index.PHP Authentication Bypass Vulnerability
References:
References:
- 8/24/06 Security Update (eFiction)
- eFiction Web Site (eFiction)