Fortinet FortiAuthenticator Appliance Multiple Security Vulnerabilities
BID:72378
Info
Fortinet FortiAuthenticator Appliance Multiple Security Vulnerabilities
| Bugtraq ID: | 72378 |
| Class: | Unknown |
| CVE: |
CVE-2015-1456 CVE-2015-1455 CVE-2015-1457 CVE-2015-1459 CVE-2015-1458 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 29 2015 12:00AM |
| Updated: | Mar 19 2015 07:30AM |
| Credit: | Denis Andzakovic |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Fortinet FortiAuthenticator Appliance Multiple Security Vulnerabilities
Fortinet FortiAuthenticator Appliance is prone to the following multiple security vulnerabilities:
1. A cross-site scripting vulnerability
2. A command-execution vulnerability
3. Multiple information-disclosure vulnerabilities
An attacker can exploit these issues to execute arbitrary script code in the context of the vulnerable site, potentially allowing the attacker to steal cookie-based authentication credentials, execute arbitrary commands and gain access to potentially sensitive information.
FortiAuthenticator v300 build 0007 is vulnerable; other versions may also be affected.
Fortinet FortiAuthenticator Appliance is prone to the following multiple security vulnerabilities:
1. A cross-site scripting vulnerability
2. A command-execution vulnerability
3. Multiple information-disclosure vulnerabilities
An attacker can exploit these issues to execute arbitrary script code in the context of the vulnerable site, potentially allowing the attacker to steal cookie-based authentication credentials, execute arbitrary commands and gain access to potentially sensitive information.
FortiAuthenticator v300 build 0007 is vulnerable; other versions may also be affected.
Exploit / POC
Fortinet FortiAuthenticator Appliance Multiple Security Vulnerabilities
Attackers can use a browser or common networking tools to exploit these issues. To exploit cross-site scripting vulnerability attackers must trick an unsuspecting victim into following a malicious URI.
The following example URI is available:
https://www.example.com/cert/scep/?operation=<script>alert(1)</script>
Attackers can use a browser or common networking tools to exploit these issues. To exploit cross-site scripting vulnerability attackers must trick an unsuspecting victim into following a malicious URI.
The following example URI is available:
https://www.example.com/cert/scep/?operation=<script>alert(1)</script>
Solution / Fix
Fortinet FortiAuthenticator Appliance Multiple Security Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Fortinet FortiAuthenticator Appliance Multiple Security Vulnerabilities
References:
References:
- Fortinet Homepage (Fortinet)