Nullsoft SHOUTCast Insecure Permissions Information Disclosure Vulnerability
BID:5414
Info
Nullsoft SHOUTCast Insecure Permissions Information Disclosure Vulnerability
| Bugtraq ID: | 5414 |
| Class: | Configuration Error |
| CVE: |
CVE-2002-1470 |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 06 2002 12:00AM |
| Updated: | Jul 11 2009 02:56PM |
| Credit: | Discovery of this issue is credited to "Loki" <[email protected]>. |
| Vulnerable: |
NullSoft Shoutcast Server 1.8.9 Solaris NullSoft Shoutcast Server 1.8.9 Mac OS X NullSoft Shoutcast Server 1.8.9 Linux NullSoft Shoutcast Server 1.8.9 FreeBSD |
| Not Vulnerable: | |
Discussion
Nullsoft SHOUTCast Insecure Permissions Information Disclosure Vulnerability
Nullsoft SHOUTCast may, under some circumstances, leave administrative credentials stored in a world-readable logfile.
When failed authentication requests (specifically a GET / request) are made to the SHOUTCast server via TCP port 8001, the real authentication credentials will be logged to a SHOUTCast server logfile. Local attackers may trivially gain access to these credentials since the logfile has default world-readable permissions.
Nullsoft SHOUTCast may, under some circumstances, leave administrative credentials stored in a world-readable logfile.
When failed authentication requests (specifically a GET / request) are made to the SHOUTCast server via TCP port 8001, the real authentication credentials will be logged to a SHOUTCast server logfile. Local attackers may trivially gain access to these credentials since the logfile has default world-readable permissions.
Exploit / POC
Nullsoft SHOUTCast Insecure Permissions Information Disclosure Vulnerability
There is no exploit required.
There is no exploit required.
References
Nullsoft SHOUTCast Insecure Permissions Information Disclosure Vulnerability
References:
References:
- Shoutcast Homepage (Nullsoft)