Smartgate SSL Server Directory Traversal Information Disclosure Vulnerability
BID:20722
Info
Smartgate SSL Server Directory Traversal Information Disclosure Vulnerability
| Bugtraq ID: | 20722 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 24 2006 12:00AM |
| Updated: | Nov 02 2006 04:42PM |
| Credit: | prdelka is credited with the discovery of this vulnerability. |
| Vulnerable: |
AEP Networks Smartgate SSL Server 4.3B |
| Not Vulnerable: |
AEP Networks Smartgate SSL Server 4.6 |
Discussion
Smartgate SSL Server Directory Traversal Information Disclosure Vulnerability
The Smartgate SSL Server is prone to a remote information-disclosure vulnerability because the application fails to properly sanitize user-supplied input.
Exploiting this issue allows remote, unauthenticated attackers to retrieve the contents of arbitrary files from vulnerable computers with the privileges of the webserver process. Information harvested may aid in further attacks.
The Smartgate SSL Server is prone to a remote information-disclosure vulnerability because the application fails to properly sanitize user-supplied input.
Exploiting this issue allows remote, unauthenticated attackers to retrieve the contents of arbitrary files from vulnerable computers with the privileges of the webserver process. Information harvested may aid in further attacks.
Exploit / POC
Smartgate SSL Server Directory Traversal Information Disclosure Vulnerability
Attackers use a standard web browser to exploit this issue.
The following exploit code written in C demonstrates this issue:
Attackers use a standard web browser to exploit this issue.
The following exploit code written in C demonstrates this issue:
Solution / Fix
Smartgate SSL Server Directory Traversal Information Disclosure Vulnerability
Solution:
The vendor has released an update to address this issue. Please contact the vendor for more information on how to obtain and apply this update.
Solution:
The vendor has released an update to address this issue. Please contact the vendor for more information on how to obtain and apply this update.
References
Smartgate SSL Server Directory Traversal Information Disclosure Vulnerability
References:
References:
- prdelka Web Site (prdelka)
- Smartgate Web Site (AEP Networks)