Inso DynaWeb httpd Format String Vulnerability
BID:5384
Info
Inso DynaWeb httpd Format String Vulnerability
| Bugtraq ID: | 5384 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 02 2002 12:00AM |
| Updated: | Jun 09 2008 11:02PM |
| Credit: | Discovered by ghandi <[email protected]>. |
| Vulnerable: |
Inso dwhttpd 4.1 a6 Inso dwhttpd 4.0.2 a7a Inso dwhttpd 3.1 a4 |
| Not Vulnerable: |
Inso dwhttpd 3.1 a4 |
Discussion
Inso DynaWeb httpd Format String Vulnerability
Inso DynaWeb webserver, dwhttpd, is used as a subcomponent in products such as Sun's AnswerBook2, which is shipped as part of the Solaris operating environment.
The dwhttpd webserver is prone to a remotely exploitable format-string vulnerability that occurs when logging requests for files that do not exist. Exploits may allow attacker-supplied code supplied to run with the privileges of the dwhttpd.
Note that a vulnerability described in Bugtraq ID 5583 allows for unauthenticated remote attackers to view the logfile. Attackers may exploit that vulnerability to more easily exploit this issue successfully and automatically.
Inso DynaWeb webserver, dwhttpd, is used as a subcomponent in products such as Sun's AnswerBook2, which is shipped as part of the Solaris operating environment.
The dwhttpd webserver is prone to a remotely exploitable format-string vulnerability that occurs when logging requests for files that do not exist. Exploits may allow attacker-supplied code supplied to run with the privileges of the dwhttpd.
Note that a vulnerability described in Bugtraq ID 5583 allows for unauthenticated remote attackers to view the logfile. Attackers may exploit that vulnerability to more easily exploit this issue successfully and automatically.
References
Inso DynaWeb httpd Format String Vulnerability
References:
References:
- Dead Bugs Society: Introduction and AnswerBook2 (Dino Dai Zovi)