MetaGauge Web Server Directory Traversal Vulnerability
BID:31596
Info
MetaGauge Web Server Directory Traversal Vulnerability
| Bugtraq ID: | 31596 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-4421 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 06 2008 12:00AM |
| Updated: | Oct 07 2008 04:38PM |
| Credit: | Brad Antoniewicz |
| Vulnerable: |
Hammer Software MetaGauge 1.0 .17 |
| Not Vulnerable: |
Hammer Software MetaGauge 1.0.3 38 |
Discussion
MetaGauge Web Server Directory Traversal Vulnerability
MetaGauge is prone to a directory-traversal vulnerability because the application fails to sufficiently sanitize user-supplied input.
Exploiting this issue will allow an attacker to view arbitrary local files within the context of the webserver. Information harvested may aid in launching further attacks.
Versions prior to MetaGauge 1.0.3.38 are vulnerable.
MetaGauge is prone to a directory-traversal vulnerability because the application fails to sufficiently sanitize user-supplied input.
Exploiting this issue will allow an attacker to view arbitrary local files within the context of the webserver. Information harvested may aid in launching further attacks.
Versions prior to MetaGauge 1.0.3.38 are vulnerable.
Exploit / POC
MetaGauge Web Server Directory Traversal Vulnerability
An attacker can exploit this issue via commonly available tools. The following example is available:
C:\> nc example.com 2004
GET /..\..\..\..\..\..\winnt\win.ini HTTP/1.1
An attacker can exploit this issue via commonly available tools. The following example is available:
C:\> nc example.com 2004
GET /..\..\..\..\..\..\winnt\win.ini HTTP/1.1
Solution / Fix
MetaGauge Web Server Directory Traversal Vulnerability
Solution:
The vendor has released an updated version; please see the references for more information.
Hammer Software MetaGauge 1.0 .17
Solution:
The vendor has released an updated version; please see the references for more information.
Hammer Software MetaGauge 1.0 .17
-
Hammer Software metagauge.zip
http://dl.hammer-software.com/metagauge.zip
References
MetaGauge Web Server Directory Traversal Vulnerability
References:
References:
- Hammer Software Homepage (Hammer Software)
- MetaGauge 1.0.0.17 Directory Traversal ([email protected])