Novell GroupWise Agents HTTP Interface HTTP Header Injection Vulnerability
BID:41705
Info
Novell GroupWise Agents HTTP Interface HTTP Header Injection Vulnerability
| Bugtraq ID: | 41705 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | No |
| Local: | No |
| Published: | Jun 30 2010 12:00AM |
| Updated: | Jun 30 2010 12:00AM |
| Credit: | Kevin Lynn of The George Washington University |
| Vulnerable: |
Novell GroupWise WebAccess 6.5 SP2 Novell GroupWise WebAccess 6.5 SP1 Novell GroupWise WebAccess 6.5 Novell GroupWise WebAccess 6.0 SP4 Novell GroupWise Internet Agent 6.5.1 Novell GroupWise Internet Agent 6.0 SP4 Novell Groupwise 7.0 Novell Groupwise 8.01x Novell Groupwise 8.0 Novell Groupwise 7.03x Novell Groupwise 7.02 Novell Groupwise 7.01 |
| Not Vulnerable: |
Novell Groupwise 8.0 SP2 Novell Groupwise 7.0 SP4 |
Discussion
Novell GroupWise Agents HTTP Interface HTTP Header Injection Vulnerability
The HTTP interfaces for Novell GroupWise agents (Message Transfer Agent, Post Office Agent, Internet Agent, WebAccess Agent, Monitor Agent) are prone to a vulnerability that allows attackers to inject arbitrary HTTP headers because they fail to sufficiently sanitize input.
By inserting arbitrary headers into an HTTP response, attackers may be able to redirect users to arbitrary sites and perform HTTP-request smuggling. Other attacks are also possible.
GroupWise 7.0, 7.01, 7.02, 7.03x, 8.0 and 8.01x are vulnerable; other versions may also be affected.
The HTTP interfaces for Novell GroupWise agents (Message Transfer Agent, Post Office Agent, Internet Agent, WebAccess Agent, Monitor Agent) are prone to a vulnerability that allows attackers to inject arbitrary HTTP headers because they fail to sufficiently sanitize input.
By inserting arbitrary headers into an HTTP response, attackers may be able to redirect users to arbitrary sites and perform HTTP-request smuggling. Other attacks are also possible.
GroupWise 7.0, 7.01, 7.02, 7.03x, 8.0 and 8.01x are vulnerable; other versions may also be affected.
Exploit / POC
Novell GroupWise Agents HTTP Interface HTTP Header Injection Vulnerability
Attackers can exploit this issue through a browser.
Attackers can exploit this issue through a browser.
Solution / Fix
Novell GroupWise Agents HTTP Interface HTTP Header Injection Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Novell GroupWise Agents HTTP Interface HTTP Header Injection Vulnerability
References:
References: