HFS HTTP File Server Multiple Security Vulnerabilities
BID:27423
Info
HFS HTTP File Server Multiple Security Vulnerabilities
| Bugtraq ID: | 27423 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 23 2008 12:00AM |
| Updated: | Jul 05 2016 10:00PM |
| Credit: | Felipe Aragon and Alec Storm of Syhunt Security Research Team are credited with the discovery of these vulnerabilities. |
| Vulnerable: |
HTTP File Server HTTP File Server 2.3(Beta Build #174) HTTP File Server HTTP File Server 2.3 beta HTTP File Server HTTP File Server 2.2b HTTP File Server HTTP File Server 2.2a HTTP File Server HTTP File Server 2.2 HTTP File Server HTTP File Server 1.5g |
| Not Vulnerable: |
HTTP File Server HTTP File Server 2.2c |
Discussion
HFS HTTP File Server Multiple Security Vulnerabilities
HFS (HTTP File Server) is prone to multiple security vulnerabilities, including cross-site scripting issues, an information-disclosure issue, an arbitrary file-creation issue, a denial-of-service issue, a username-spoofing issue, and a logfile-forging issue.
A successful exploit could allow an attacker to deny service to legitimate users, create and execute arbitrary files in the context of the webserver process, falsify log information, or execute arbitrary script code in the browser of an unsuspecting user. Other attacks are also possible.
HFS (HTTP File Server) is prone to multiple security vulnerabilities, including cross-site scripting issues, an information-disclosure issue, an arbitrary file-creation issue, a denial-of-service issue, a username-spoofing issue, and a logfile-forging issue.
A successful exploit could allow an attacker to deny service to legitimate users, create and execute arbitrary files in the context of the webserver process, falsify log information, or execute arbitrary script code in the browser of an unsuspecting user. Other attacks are also possible.
Exploit / POC
HFS HTTP File Server Multiple Security Vulnerabilities
Attackers can exploit these issues through a browser. For the cross-site scripting issues, an attacker must entice an unsuspecting user to visit a malicious URI.
The following exploit code is available:
Attackers can exploit these issues through a browser. For the cross-site scripting issues, an attacker must entice an unsuspecting user to visit a malicious URI.
The following exploit code is available:
Solution / Fix
HFS HTTP File Server Multiple Security Vulnerabilities
Solution:
The vendor has released HFS 2.2c to address these issues. Please see the references for more information.
HTTP File Server HTTP File Server 2.2b
HTTP File Server HTTP File Server 2.3 beta
HTTP File Server HTTP File Server 2.3(Beta Build #174)
HTTP File Server HTTP File Server 2.2a
HTTP File Server HTTP File Server 1.5g
HTTP File Server HTTP File Server 2.2
Solution:
The vendor has released HFS 2.2c to address these issues. Please see the references for more information.
HTTP File Server HTTP File Server 2.2b
-
HTTP File Server hfs2.2c.zip
http://downloads.sourceforge.net/hfs/hfs2.2c.zip?modtime=1201107806&bi g_mirror=0
HTTP File Server HTTP File Server 2.3 beta
-
HTTP File Server hfs2.2c.zip
http://downloads.sourceforge.net/hfs/hfs2.2c.zip?modtime=1201107806&bi g_mirror=0
HTTP File Server HTTP File Server 2.3(Beta Build #174)
-
HTTP File Server hfs2.2c.zip
http://downloads.sourceforge.net/hfs/hfs2.2c.zip?modtime=1201107806&bi g_mirror=0
HTTP File Server HTTP File Server 2.2a
-
HTTP File Server hfs2.2c.zip
http://downloads.sourceforge.net/hfs/hfs2.2c.zip?modtime=1201107806&bi g_mirror=0
HTTP File Server HTTP File Server 1.5g
-
HTTP File Server hfs2.2c.zip
http://downloads.sourceforge.net/hfs/hfs2.2c.zip?modtime=1201107806&bi g_mirror=0
HTTP File Server HTTP File Server 2.2
-
HTTP File Server hfs2.2c.zip
http://downloads.sourceforge.net/hfs/hfs2.2c.zip?modtime=1201107806&bi g_mirror=0
References
HFS HTTP File Server Multiple Security Vulnerabilities
References:
References:
- HFS Home Page (Http File Server)
- HFSHack 1.0b (By Felipe M. Aragon And Alec Storm ) (Syhunt Technology)
- Syhunt: HFS (HTTP File Server) Log Arbitrary File/Directory Manipulation and Den ("Felipe M. Aragon"
) - Syhunt: HFS (HTTP File Server) Template Cross-Site Scripting and Information Dis ("Felipe M. Aragon"
) - Syhunt: HFS (HTTP File Server) Username Spoofing and Log Forging/Injection Vulne ("Felipe M. Aragon"
)