Hiki Session ID File Deletion Vulnerability
BID:24603
Info
Hiki Session ID File Deletion Vulnerability
| Bugtraq ID: | 24603 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-2836 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 24 2007 12:00AM |
| Updated: | Jun 29 2007 07:58PM |
| Credit: | This issue was reported by JVN. |
| Vulnerable: |
Hiki Hiki 0.8.6 Hiki Hiki 0.8.5 Hiki Hiki 0.8.4 Hiki Hiki 0.8.3 Hiki Hiki 0.8.2 Hiki Hiki 0.8.1 Hiki Hiki 0.8 Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia-64 Debian Linux 4.0 ia-32 Debian Linux 4.0 hppa Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0 |
| Not Vulnerable: |
Hiki Hiki 0.8.7 |
Discussion
Hiki Session ID File Deletion Vulnerability
Hiki is prone to a vulnerability that allows an attacker to delete arbitrary files because of an error in the way it deletes files when a user logs out.
An attacker can exploit this vulnerability to delete arbitrary files in the context of the affected software, which can allow the attacker to cause significant damage to an installation, potentially denying service to legitimate users.
Hiki is prone to a vulnerability that allows an attacker to delete arbitrary files because of an error in the way it deletes files when a user logs out.
An attacker can exploit this vulnerability to delete arbitrary files in the context of the affected software, which can allow the attacker to cause significant damage to an installation, potentially denying service to legitimate users.
Exploit / POC
Hiki Session ID File Deletion Vulnerability
Attackers can exploit this vulnerability via a browser and an HTTP-proxying application.
Attackers can exploit this vulnerability via a browser and an HTTP-proxying application.
Solution / Fix
Hiki Session ID File Deletion Vulnerability
Solution:
The vendor has released Hiki 0.8.7 to address this issue. Please see the references for vendor advisories.
Hiki Hiki 0.8.6
Solution:
The vendor has released Hiki 0.8.7 to address this issue. Please see the references for vendor advisories.
Hiki Hiki 0.8.6
-
Hiki Hiki 0.8.7
http://prdownloads.sourceforge.jp/hiki/25954/hiki-0.8.7.tar.gz
References
Hiki Session ID File Deletion Vulnerability
References:
References:
- Hiki Homepage (Hiki)
- Hiki Advisory 2007-06-24 (Hiki)