CommuniGate Pro Webmail File Disclosure Vulnerability
BID:6542
Info
CommuniGate Pro Webmail File Disclosure Vulnerability
| Bugtraq ID: | 6542 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 06 2003 12:00AM |
| Updated: | Jan 06 2003 12:00AM |
| Credit: | Discovery of this issue is credited to "G.P.de.Boer" <[email protected]>. |
| Vulnerable: |
Stalker Communigate Pro 4.0.2 Stalker Communigate Pro 4.0.1 Stalker Communigate Pro 4.0 b3 Stalker Communigate Pro 4.0 b2 |
| Not Vulnerable: |
Stalker Communigate Pro 4.0.3 |
Discussion
CommuniGate Pro Webmail File Disclosure Vulnerability
A file disclosure vulnerability has been reported in the CommuniGate Pro webmail component.
A specially crafted web request containing dot-dot-slash (../) directory traversal sequences may break out of the document root and disclose arbitrary web server readable files that exist on the underlying host.
Exploitation of this vulnerability may lead to disclosure of sensitive information that may be useful in mounting further attacks on the host system. This issue was reported for CommuniGate Pro on FreeBSD. It is likely that the software is affected on other platforms as well.
A file disclosure vulnerability has been reported in the CommuniGate Pro webmail component.
A specially crafted web request containing dot-dot-slash (../) directory traversal sequences may break out of the document root and disclose arbitrary web server readable files that exist on the underlying host.
Exploitation of this vulnerability may lead to disclosure of sensitive information that may be useful in mounting further attacks on the host system. This issue was reported for CommuniGate Pro on FreeBSD. It is likely that the software is affected on other platforms as well.
Exploit / POC
CommuniGate Pro Webmail File Disclosure Vulnerability
This issue may be exploited with a web browser.
This issue may be exploited with a web browser.
Solution / Fix
CommuniGate Pro Webmail File Disclosure Vulnerability
Solution:
This issue has been addressed in CommuniGate Pro 4.0.3.
Stalker Communigate Pro 4.0 b3
Stalker Communigate Pro 4.0 b2
Stalker Communigate Pro 4.0.1
Stalker Communigate Pro 4.0.2
Solution:
This issue has been addressed in CommuniGate Pro 4.0.3.
Stalker Communigate Pro 4.0 b3
-
Stalker CommuniGate Pro 4.0.3
http://www.stalker.com/CommuniGatePro/default.html#Current
Stalker Communigate Pro 4.0 b2
-
Stalker CommuniGate Pro 4.0.3
http://www.stalker.com/CommuniGatePro/default.html#Current
Stalker Communigate Pro 4.0.1
-
Stalker CommuniGate Pro 4.0.3
http://www.stalker.com/CommuniGatePro/default.html#Current
Stalker Communigate Pro 4.0.2
-
Stalker CommuniGate Pro 4.0.3
http://www.stalker.com/CommuniGatePro/default.html#Current
References
CommuniGate Pro Webmail File Disclosure Vulnerability
References:
References:
- Communigate Pro Homepage (Stalker)
- Directory traversal bug in Communigate Pro 4's Webmail service ("G.P.de.Boer"
)