Oracle Application Server Portal Authentication Bypass Vulnerability
BID:29119
Info
Oracle Application Server Portal Authentication Bypass Vulnerability
| Bugtraq ID: | 29119 |
| Class: | Design Error |
| CVE: |
CVE-2008-2138 |
| Remote: | Yes |
| Local: | No |
| Published: | May 09 2008 12:00AM |
| Updated: | May 15 2008 05:25PM |
| Credit: | Deniz CEVIK |
| Vulnerable: |
Oracle Application Server Portal 10g |
| Not Vulnerable: | |
Discussion
Oracle Application Server Portal Authentication Bypass Vulnerability
Oracle Application Server Portal is prone to a authentication-bypass vulnerability because the application fails to properly restrict access to certain resources.
An attacker can exploit this vulnerability to bypass certain security restrictions and gain access to potentially sensitive contents of the portal.
Oracle Application Server Portal 10g is vulnerable to this issue; other versions may also be affected.
Oracle Application Server Portal is prone to a authentication-bypass vulnerability because the application fails to properly restrict access to certain resources.
An attacker can exploit this vulnerability to bypass certain security restrictions and gain access to potentially sensitive contents of the portal.
Oracle Application Server Portal 10g is vulnerable to this issue; other versions may also be affected.
Exploit / POC
Oracle Application Server Portal Authentication Bypass Vulnerability
Attackers can use a browser to exploit this issue.
The following proof of concept is available:
Visiting the 'http://www.example.com/portal/%0A' site will create a cookie sufficient to trigger the issue and access 'http://www.example.com/dav_portal/porta/' without authorization.
Attackers can use a browser to exploit this issue.
The following proof of concept is available:
Visiting the 'http://www.example.com/portal/%0A' site will create a cookie sufficient to trigger the issue and access 'http://www.example.com/dav_portal/porta/' without authorization.
Solution / Fix
Oracle Application Server Portal Authentication Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Oracle Application Server Portal Authentication Bypass Vulnerability
References:
References: