Netscape PublishingXPert Local File Reading Vulnerability
BID:2920
Info
Netscape PublishingXPert Local File Reading Vulnerability
| Bugtraq ID: | 2920 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 06 2000 12:00AM |
| Updated: | Apr 06 2000 12:00AM |
| Credit: | This vulnerability was announced a message posted to Packetstorm by \x00\x00 <[email protected]> on April 6, 2000. |
| Vulnerable: |
Netscape PublishingXpert 2.5 Netscape PublishingXpert 2.2 Netscape PublishingXpert 2.0 |
| Not Vulnerable: | |
Discussion
Netscape PublishingXPert Local File Reading Vulnerability
Netscape PublishingXpert is an e-commerce application distributed by Netscape. PublishingXpert manages user information, sending them special ads and personalized content.
PSCOErrPage.htm does not sufficiently validate input. A problem with PSCOErrPage.htm makes it possible for a remote user to view any file on the system.
This makes it possible for a remote user to launch an information gathering attack, and potentially gain local access to the system.
Netscape PublishingXpert is an e-commerce application distributed by Netscape. PublishingXpert manages user information, sending them special ads and personalized content.
PSCOErrPage.htm does not sufficiently validate input. A problem with PSCOErrPage.htm makes it possible for a remote user to view any file on the system.
This makes it possible for a remote user to launch an information gathering attack, and potentially gain local access to the system.
Exploit / POC
Netscape PublishingXPert Local File Reading Vulnerability
Exploit contributed by \x00\x00 <[email protected]>.
Exploit contributed by \x00\x00 <[email protected]>.
Solution / Fix
Netscape PublishingXPert Local File Reading Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Netscape PublishingXPert Local File Reading Vulnerability
References:
References: