EMUMail HTTP Host Arbitrary Config File Loading Vulnerability
BID:4488
Info
EMUMail HTTP Host Arbitrary Config File Loading Vulnerability
| Bugtraq ID: | 4488 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Apr 10 2002 12:00AM |
| Updated: | Apr 10 2002 12:00AM |
| Credit: | Vulnerability discovery credited to Leif Jakob <[email protected]>. |
| Vulnerable: |
EMUMail EMUMail for Unix 5.1 EMUMail EMUMail for Unix 5.0 EMUMail EMUMail for Red Hat Linux 5.1 EMUMail EMUMail for Red Hat Linux 5.0 EMUMail EMUMail 3.0 |
| Not Vulnerable: | |
Discussion
EMUMail HTTP Host Arbitrary Config File Loading Vulnerability
Emumail is a web mail package available from Emumail, Inc. It is designed for use on Linux, Unix, and Windows systems.
Under some circumstances, it is possible for a local user to gain privileges equal to the HTTP server process. Upon connecting to the server and supplying a malicious HTTP Host value to emumail, it could be possible to force the program to open an arbitrary file. This could addition result in the execution of an arbitrary program, supplied by an attacker with local access to the host.
Emumail is a web mail package available from Emumail, Inc. It is designed for use on Linux, Unix, and Windows systems.
Under some circumstances, it is possible for a local user to gain privileges equal to the HTTP server process. Upon connecting to the server and supplying a malicious HTTP Host value to emumail, it could be possible to force the program to open an arbitrary file. This could addition result in the execution of an arbitrary program, supplied by an attacker with local access to the host.
Exploit / POC
EMUMail HTTP Host Arbitrary Config File Loading Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
EMUMail HTTP Host Arbitrary Config File Loading Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
EMUMail HTTP Host Arbitrary Config File Loading Vulnerability
References:
References:
- Emumail Home Page (Emumail)