BSCW Insecure Default Installation Vulnerability
BID:3777
Info
BSCW Insecure Default Installation Vulnerability
| Bugtraq ID: | 3777 |
| Class: | Configuration Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 03 2002 12:00AM |
| Updated: | Jan 03 2002 12:00AM |
| Credit: | This vulnerability was submitted in a January 3rd, 2001 BugTraq posting by Thomas Seliger <[email protected]>. |
| Vulnerable: |
BSCW BSCW 4.0 .6 BSCW BSCW 4.0 BSCW BSCW 3.4 |
| Not Vulnerable: | |
Discussion
BSCW Insecure Default Installation Vulnerability
BSCW (Basic Support for Cooperative Work) is a web-based groupware application, allowing users to share a workspace via a web interface. It runs on Microsoft Windows NT/2000 systems, as well as a number of Unix variants.
The default installation allows users to self-register, potentially allowing untrusted users to access the service.
This may provide a window of opportunity for an untrusted, malicious user to access the service to exploit known issues. One example of an existing issue that may be exploited as a result of untrusted users being able to self-register is BugTraq ID 3776 "BSCW Remote Command Execution Vulnerability".
BSCW (Basic Support for Cooperative Work) is a web-based groupware application, allowing users to share a workspace via a web interface. It runs on Microsoft Windows NT/2000 systems, as well as a number of Unix variants.
The default installation allows users to self-register, potentially allowing untrusted users to access the service.
This may provide a window of opportunity for an untrusted, malicious user to access the service to exploit known issues. One example of an existing issue that may be exploited as a result of untrusted users being able to self-register is BugTraq ID 3776 "BSCW Remote Command Execution Vulnerability".
Exploit / POC
BSCW Insecure Default Installation Vulnerability
The self-registration interface can be accessed with the following example:
http://your.bscwserver.url/pub/english.cgi?op=rmail
The self-registration interface can be accessed with the following example:
http://your.bscwserver.url/pub/english.cgi?op=rmail
Solution / Fix
BSCW Insecure Default Installation Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.