Macromedia JRun Administrative Authentication Bypass Vulnerability
BID:5118
Info
Macromedia JRun Administrative Authentication Bypass Vulnerability
| Bugtraq ID: | 5118 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 28 2002 12:00AM |
| Updated: | Jun 28 2002 12:00AM |
| Credit: | Discovery of this issue is credited to Matt Moore <[email protected]>. |
| Vulnerable: |
Macromedia JRun 4.0 Macromedia JRun 3.1 Macromedia JRun 3.0 |
| Not Vulnerable: | |
Discussion
Macromedia JRun Administrative Authentication Bypass Vulnerability
Macromedia JRun is prone to an issue which may allow remote attackers to bypass the authentication page for the admin server. This may be exploited by adding an extraneous '/' to a request for the administrative authentication page.
Macromedia JRun is prone to an issue which may allow remote attackers to bypass the authentication page for the admin server. This may be exploited by adding an extraneous '/' to a request for the administrative authentication page.
Exploit / POC
Macromedia JRun Administrative Authentication Bypass Vulnerability
This issue may be exploited with a web browser. The following example was submitted:
http://JRun-Server:8000//welcome.jsp?&action=stop&server=default
will shutdown the 'default' JRun server instance on port 8100. Other
administrative functions can also be accessed.
This issue may be exploited with a web browser. The following example was submitted:
http://JRun-Server:8000//welcome.jsp?&action=stop&server=default
will shutdown the 'default' JRun server instance on port 8100. Other
administrative functions can also be accessed.
References
Macromedia JRun Administrative Authentication Bypass Vulnerability
References:
References: