SapporoWorks BlackJumboDog Web Server Unspecified Authentication Bypass Vulnerability
BID:33016
Info
SapporoWorks BlackJumboDog Web Server Unspecified Authentication Bypass Vulnerability
| Bugtraq ID: | 33016 |
| Class: | Access Validation Error |
| CVE: |
CVE-2008-5721 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 25 2008 12:00AM |
| Updated: | Dec 31 2008 11:31PM |
| Credit: | Tsuyoshi Ishibashi of Mitsui Bussan Secure Directions, Inc. |
| Vulnerable: |
SapporoWorks BlackJumboDog 4.2.2 SapporoWorks BlackJumboDog 3.6.2 SapporoWorks BlackJumboDog 3.6.1 SapporoWorks Black JumboDog 3.6.2 SapporoWorks Black JumboDog 3.6.1 SapporoWorks Black JumboDog 2.6.6 SapporoWorks Black JumboDog 2.6.5 SapporoWorks Black JumboDog 2.6.4 |
| Not Vulnerable: | |
Discussion
SapporoWorks BlackJumboDog Web Server Unspecified Authentication Bypass Vulnerability
BlackJumboDog is prone to an authentication-bypass vulnerability.
Attackers can exploit this vulnerability to gain unauthorized access to the affected application, which may aid in further attacks.
BlackJumboDog 4.2.2 and earlier are vulnerable.
BlackJumboDog is prone to an authentication-bypass vulnerability.
Attackers can exploit this vulnerability to gain unauthorized access to the affected application, which may aid in further attacks.
BlackJumboDog 4.2.2 and earlier are vulnerable.
Exploit / POC
SapporoWorks BlackJumboDog Web Server Unspecified Authentication Bypass Vulnerability
Attackers can exploit this issue using readily available network tools.
Attackers can exploit this issue using readily available network tools.
Solution / Fix
SapporoWorks BlackJumboDog Web Server Unspecified Authentication Bypass Vulnerability
Solution:
Vendor updates are available. Contact the vendor for details.
Solution:
Vendor updates are available. Contact the vendor for details.
References
SapporoWorks BlackJumboDog Web Server Unspecified Authentication Bypass Vulnerability
References:
References: