Symantec Altiris Deployment Solution 'axengine.exe' SQL Injection Vulnerability
BID:29198
Info
Symantec Altiris Deployment Solution 'axengine.exe' SQL Injection Vulnerability
| Bugtraq ID: | 29198 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-2286 |
| Remote: | Yes |
| Local: | No |
| Published: | May 14 2008 12:00AM |
| Updated: | Nov 13 2013 12:23AM |
| Credit: | Brett Moore of Insomnia Security working with Zero Day Initiative |
| Vulnerable: |
Symantec Altiris Deployment Solution 6.9.164 Symantec Altiris Deployment Solution 6.9 Symantec Altiris Deployment Solution 6.8.380.0 Symantec Altiris Deployment Solution 6.8 SP2 Symantec Altiris Deployment Solution 6.8 SP1 Symantec Altiris Deployment Solution 6.8 HP ProLiant Essentials Rapid Deployment Pack (RDP) 0 |
| Not Vulnerable: |
Symantec Altiris Deployment Solution 6.9.176 |
Discussion
Symantec Altiris Deployment Solution 'axengine.exe' SQL Injection Vulnerability
Symantec Altiris Deployment Solution is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to execute arbitrary code with SYSTEM-level privileges. Successfully exploiting this issue will facilitate in the complete compromise of affected computers.
Versions prior to Symantec Altiris Deployment Solution 6.9.176 are vulnerable.
Symantec Altiris Deployment Solution is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to execute arbitrary code with SYSTEM-level privileges. Successfully exploiting this issue will facilitate in the complete compromise of affected computers.
Versions prior to Symantec Altiris Deployment Solution 6.9.176 are vulnerable.
Exploit / POC
Symantec Altiris Deployment Solution 'axengine.exe' SQL Injection Vulnerability
Attackers can use readily available network utilities to exploit this issue.
The following metasploit exploit code is available:
Attackers can use readily available network utilities to exploit this issue.
The following metasploit exploit code is available:
Solution / Fix
Symantec Altiris Deployment Solution 'axengine.exe' SQL Injection Vulnerability
Solution:
The vendor has released an update. Please see the references for more information.
Solution:
The vendor has released an update. Please see the references for more information.
References
Symantec Altiris Deployment Solution 'axengine.exe' SQL Injection Vulnerability
References:
References:
- Altiris Deployment Solution Homepage (Symantec)
- Symantec Security Advisory SYM008-012 (Symantec)
- Insomnia : ISVA-080516.1 - Altiris Deployment Solution - SQL Injection ('Brett Moore'
) - ZDI-08-024: Symantec Altiris Deployment Solution SQL Injection Vulnerability ([email protected])
- ZDI-08-024: Symantec Altiris Deployment Solution SQL Injection (Zero Day Initiative)