Roundup EditCSVAction Security Bypass Vulnerability
BID:34059
Info
Roundup EditCSVAction Security Bypass Vulnerability
| Bugtraq ID: | 34059 |
| Class: | Access Validation Error |
| CVE: |
CVE-2009-2737 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 08 2009 12:00AM |
| Updated: | Apr 13 2015 09:40PM |
| Credit: | Daniel Diniz |
| Vulnerable: |
Roundup Roundup 1.4.6 Debian Linux 5.0 sparc Debian Linux 5.0 s/390 Debian Linux 5.0 powerpc Debian Linux 5.0 mipsel Debian Linux 5.0 mips Debian Linux 5.0 m68k Debian Linux 5.0 ia-64 Debian Linux 5.0 ia-32 Debian Linux 5.0 hppa Debian Linux 5.0 armel Debian Linux 5.0 arm Debian Linux 5.0 amd64 Debian Linux 5.0 alpha Debian Linux 5.0 Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia-64 Debian Linux 4.0 ia-32 Debian Linux 4.0 hppa Debian Linux 4.0 armel Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0 |
| Not Vulnerable: | |
Discussion
Roundup EditCSVAction Security Bypass Vulnerability
Roundup is prone to a security-bypass vulnerability because it fails to properly implement access controls.
An attacker can exploit this issue to bypass intended security restrictions and gain access to and modify potentially sensitive data.
Roundup 1.4.6 is vulnerable; other versions may be affected as well.
Roundup is prone to a security-bypass vulnerability because it fails to properly implement access controls.
An attacker can exploit this issue to bypass intended security restrictions and gain access to and modify potentially sensitive data.
Roundup 1.4.6 is vulnerable; other versions may be affected as well.
Exploit / POC
Roundup EditCSVAction Security Bypass Vulnerability
An attacker can exploit this issue by sending specially crafted URI requests to the service.
An attacker can exploit this issue by sending specially crafted URI requests to the service.
Solution / Fix
Roundup EditCSVAction Security Bypass Vulnerability
Solution:
Vendor updates are available. Please see the references for more information.
Debian Linux 4.0 amd64
Debian Linux 4.0 ia-32
Debian Linux 4.0 arm
Debian Linux 5.0 hppa
Debian Linux 5.0 ia-64
Debian Linux 4.0 hppa
Debian Linux 4.0 sparc
Debian Linux 4.0 s/390
Debian Linux 5.0 m68k
Debian Linux 5.0 arm
Debian Linux 4.0 powerpc
Debian Linux 4.0 alpha
Debian Linux 4.0 armel
Debian Linux 5.0 armel
Debian Linux 4.0 m68k
Debian Linux 5.0
Debian Linux 4.0
Debian Linux 4.0 mipsel
Debian Linux 5.0 amd64
Debian Linux 5.0 alpha
Debian Linux 5.0 ia-32
Debian Linux 5.0 mips
Debian Linux 5.0 s/390
Debian Linux 5.0 mipsel
Debian Linux 5.0 powerpc
Debian Linux 4.0 ia-64
Debian Linux 4.0 mips
Debian Linux 5.0 sparc
Solution:
Vendor updates are available. Please see the references for more information.
Debian Linux 4.0 amd64
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 4.0 ia-32
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 4.0 arm
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 5.0 hppa
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 5.0 ia-64
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 4.0 hppa
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 4.0 sparc
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 4.0 s/390
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 5.0 m68k
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 5.0 arm
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 4.0 powerpc
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 4.0 alpha
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 4.0 armel
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 5.0 armel
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 4.0 m68k
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 5.0
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 4.0
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 4.0 mipsel
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 5.0 amd64
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 5.0 alpha
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 5.0 ia-32
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 5.0 mips
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 5.0 s/390
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 5.0 mipsel
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 5.0 powerpc
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
Debian Linux 4.0 ia-64
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 4.0 mips
-
Debian roundup_1.2.1-10+etch1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.2.1-1 0+etch1_all.deb
Debian Linux 5.0 sparc
-
Debian roundup_1.4.4-4+lenny1_all.deb
http://security.debian.org/pool/updates/main/r/roundup/roundup_1.4.4-4 +lenny1_all.deb
References
Roundup EditCSVAction Security Bypass Vulnerability
References:
References:
- Debian Bug report logs - #518768 (Sebastian Harl
) - Issue 2550521 (Roundup)
- Roundup Homepage (Roundup)