WatchGuard Firebox VClass CLI Interface Improperly Terminated Connection Vulnerability
BID:5815
Info
WatchGuard Firebox VClass CLI Interface Improperly Terminated Connection Vulnerability
| Bugtraq ID: | 5815 |
| Class: | Input Validation Error |
| CVE: |
CVE-2002-1520 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 27 2002 12:00AM |
| Updated: | Jul 11 2009 05:06PM |
| Credit: | Discovery of this vulnerability credited to Joao Gouveia <[email protected]>. |
| Vulnerable: |
WatchGuard Firebox V80 WatchGuard Firebox V60 WatchGuard Firebox V100 WatchGuard Firebox V10 RapidStream RapidStream 8000 RapidStream RapidStream 6000 RapidStream RapidStream 500 RapidStream RapidStream 4000 RapidStream RapidStream 2000 |
| Not Vulnerable: | |
Discussion
WatchGuard Firebox VClass CLI Interface Improperly Terminated Connection Vulnerability
A vulnerability has been reported that affects Firebox Vclass security appliances as well as legacy RSSA (RapidStream Security Appliances) devices. The vulnerability is due to the CLI binary failing to properly terminate a failed login connection. This results in an attacker having access to the CLI with administrative privileges.
A vulnerability has been reported that affects Firebox Vclass security appliances as well as legacy RSSA (RapidStream Security Appliances) devices. The vulnerability is due to the CLI binary failing to properly terminate a failed login connection. This results in an attacker having access to the CLI with administrative privileges.
Exploit / POC
WatchGuard Firebox VClass CLI Interface Improperly Terminated Connection Vulnerability
There is no exploit code required.
There is no exploit code required.
Solution / Fix
WatchGuard Firebox VClass CLI Interface Improperly Terminated Connection Vulnerability
Solution:
The vendor has released hotfixes which resolve this issue. Further details are available in the respective release notes and referenced BugTraq message:
RapidStream RapidStream 2000
RapidStream RapidStream 6000
RapidStream RapidStream 500
RapidStream RapidStream 4000
RapidStream RapidStream 8000
Solution:
The vendor has released hotfixes which resolve this issue. Further details are available in the respective release notes and referenced BugTraq message:
RapidStream RapidStream 2000
-
WatchGuard RS-302-HotFix-31.rsu
ftp://RSSA:[email protected]/RSSA_302/RSSA-302-HotFix-31/ RS-302-HotFix-31.rsu -
WatchGuard RS-32-hotfix-2-2000.rsu
ftp://RSSA:[email protected]/RSSA_302/Vcontroller_32/32_H F2_2000_4000/RS-32-hotfix-2-2000.rsu
RapidStream RapidStream 6000
-
WatchGuard RS-302-HotFix-31.rsu
ftp://RSSA:[email protected]/RSSA_302/RSSA-302-HotFix-31/ RS-302-HotFix-31.rsu -
WatchGuard RS-32-hotfix-2.rsu
ftp://RSSA:[email protected]/RSSA_302/Vcontroller_32/32_H F2_6000_8000/RS-32-hotfix-2.rsu
RapidStream RapidStream 500
-
WatchGuard RS-32-hotfix-2-500.rsu
ftp://RSSA:[email protected]/RSSA_500/Vclass-32_HotFix2/R S-32-hotfix-2-500.rsu
RapidStream RapidStream 4000
-
WatchGuard RS-302-HotFix-31.rsu
ftp://RSSA:[email protected]/RSSA_302/RSSA-302-HotFix-31/ RS-302-HotFix-31.rsu -
WatchGuard RS-32-hotfix-2-2000.rsu
ftp://RSSA:[email protected]/RSSA_302/Vcontroller_32/32_H F2_2000_4000/RS-32-hotfix-2-2000.rsu
RapidStream RapidStream 8000
-
WatchGuard RS-302-HotFix-31.rsu
ftp://RSSA:[email protected]/RSSA_302/RSSA-302-HotFix-31/ RS-302-HotFix-31.rsu -
WatchGuard RS-32-hotfix-2.rsu
ftp://RSSA:[email protected]/RSSA_302/Vcontroller_32/32_H F2_6000_8000/RS-32-hotfix-2.rsu
References
WatchGuard Firebox VClass CLI Interface Improperly Terminated Connection Vulnerability
References:
References:
- 3.2 Hotfix 2 Release Notes (WatchGuard)
- Legacy RapidStream Software (WatchGuard)
- RapidStream Product Information (RapidStream)
- RS-302-HotFix-31-readme.txt (WatchGuard)
- WatchGuard Homepage (WatchGuard)