MantisBT Null Byte Poisoning LDAP Authentication Bypass Vulnerability
BID:69780
Info
MantisBT Null Byte Poisoning LDAP Authentication Bypass Vulnerability
| Bugtraq ID: | 69780 |
| Class: | Design Error |
| CVE: |
CVE-2014-6387 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 12 2014 12:00AM |
| Updated: | May 07 2015 05:07PM |
| Credit: | Matthew Daley |
| Vulnerable: |
Mantisbt Mantisbt 1.2.17 Mantisbt Mantisbt 1.2.16 Mantisbt Mantisbt 1.2.15 Mantisbt Mantisbt 1.2.14 Mantisbt Mantisbt 1.2.13 Mantisbt Mantisbt 1.2.12 Mantisbt Mantisbt 1.2.11 Mantisbt Mantisbt 1.2.10 Mantisbt Mantisbt 1.2.9 Mantisbt Mantisbt 1.2.8 Mantisbt Mantisbt 1.2.7 Mantisbt Mantisbt 1.2.6 Mantisbt Mantisbt 1.2.4 Mantisbt Mantisbt 1.2.3 Mantisbt Mantisbt 1.1.8 Mantisbt Mantisbt 1.1.7 Mantisbt Mantisbt 1.1.5 Mantisbt Mantisbt 1.0.8 Mantisbt Mantisbt 1.0.7 Mantisbt Mantisbt 1.0.6 Mantisbt Mantisbt 1.0 Mantisbt Mantisbt 0.19.5 Mantisbt Mantisbt 0.19.4 Mantisbt Mantisbt 0.19.3 Mantisbt Mantisbt 0.19.2 Mantisbt Mantisbt 0.19 Mantisbt Mantisbt 1.2.5 Mantisbt Mantisbt 1.2.2 Mantisbt Mantisbt 1.2.1 Mantisbt Mantisbt 1.1.9 Mantisbt Mantisbt 1.1.6 Mantisbt Mantisbt 1.1.4 Mantisbt Mantisbt 1.1.3 Mantisbt Mantisbt 1.1.2 Mantisbt Mantisbt 1.1.1 Mantisbt Mantisbt 1.1.0 Mantisbt Mantisbt 1.0.9 Mantisbt Mantisbt 1.0.5 Mantisbt Mantisbt 1.0.4 Mantisbt Mantisbt 1.0.3 Mantisbt Mantisbt 1.0.2 Mantisbt Mantisbt 1.0.1 Mantisbt Mantisbt 0.19.1 |
| Not Vulnerable: | |
Discussion
MantisBT Null Byte Poisoning LDAP Authentication Bypass Vulnerability
MantisBT is prone to an authentication-bypass vulnerability.
An attacker can exploit this issue to bypass the authentication process and gain unauthorized access to the system. Successfully exploiting this issue may lead to further attacks.
MantisBT 1.2.17 and prior versions are vulnerable.
MantisBT is prone to an authentication-bypass vulnerability.
An attacker can exploit this issue to bypass the authentication process and gain unauthorized access to the system. Successfully exploiting this issue may lead to further attacks.
MantisBT 1.2.17 and prior versions are vulnerable.
Exploit / POC
MantisBT Null Byte Poisoning LDAP Authentication Bypass Vulnerability
An attacker can exploit this issue using a web browser.
An attacker can exploit this issue using a web browser.
Solution / Fix
MantisBT Null Byte Poisoning LDAP Authentication Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
MantisBT Null Byte Poisoning LDAP Authentication Bypass Vulnerability
References:
References:
- Strip null bytes out of GPC input strings (MantisBT)
- Strip null bytes out of GPC input strings (MantisBT)
- 0017640: Null byte poisoning in LDAP authentication (MantisBT)