Volution Client Authentication Failure Hijacking Vulnerability
BID:2850
Info
Volution Client Authentication Failure Hijacking Vulnerability
| Bugtraq ID: | 2850 |
| Class: | Configuration Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 08 2001 12:00AM |
| Updated: | Jun 08 2001 12:00AM |
| Credit: | This vulnerability was originally announced in a Caldera Security Advisory on June 8, 2001. |
| Vulnerable: |
Caldera Volution 1.0.7 Caldera Volution 1.0.6 Caldera Volution 1.0 |
| Not Vulnerable: |
Caldera Volution 1.0.8 -47 |
Discussion
Volution Client Authentication Failure Hijacking Vulnerability
Volution is a software package distributed by Caldera Systems. Volution is a remote system administration and management software package with includes such features and system resource monitoring and software management.
A problem with the Volution client makes it possible to hijack a Volution managed system. A system managed by Volution authenticates with an LDAP server to get data. However, if this fails, the client begins searching the local network for the Computer Creation Daemon.
This makes it possible for another Volution server on the local network to gain control of the Volution client, giving the Volution server full administrative access to the system.
Volution is a software package distributed by Caldera Systems. Volution is a remote system administration and management software package with includes such features and system resource monitoring and software management.
A problem with the Volution client makes it possible to hijack a Volution managed system. A system managed by Volution authenticates with an LDAP server to get data. However, if this fails, the client begins searching the local network for the Computer Creation Daemon.
This makes it possible for another Volution server on the local network to gain control of the Volution client, giving the Volution server full administrative access to the system.
Exploit / POC
Volution Client Authentication Failure Hijacking Vulnerability
See discussion.
See discussion.