Vignette NEEDS Command TCL Code Injection Vulnerability
BID:7690
Info
Vignette NEEDS Command TCL Code Injection Vulnerability
| Bugtraq ID: | 7690 |
| Class: | Input Validation Error |
| CVE: |
CVE-2003-0405 |
| Remote: | Yes |
| Local: | No |
| Published: | May 26 2003 12:00AM |
| Updated: | Jul 11 2009 10:06PM |
| Credit: | Discovery of this vulnerability has been credited to Ramon Pinuaga Cascales <[email protected]>, a conflicting report has been submitted by Stefan Bethke <[email protected]>. |
| Vulnerable: |
Vignette Vignette V/5 Vignette V6 Content Suite 6.0.3 Vignette V6 Content Suite 6.0.2 Vignette V6 Content Suite 6.0.1 Vignette V6 Content Suite Vignette StoryServer 5.0 Vignette StoryServer 4.1 Vignette StoryServer 4.0 Vignette Content Suite V7 Vignette Content Suite V5 |
| Not Vulnerable: |
Vignette V6 Content Suite 6.0.4 |
Discussion
Vignette NEEDS Command TCL Code Injection Vulnerability
Under some circumstances Vignette applications that harness the Vignette API, specifically a 'NEEDS' command that follows a certain code path, may be prone to injection of arbitrary TCL code.
This could allow remote attackers to execute arbitrary commands with the privileges of the affected server. It has been reported that several of the default Vignette applications are prone to this issue.
This issue could also affect third-party applications that are developed for use with Vignette.
This issue was reported for Vignette StoryServer version 5 and version 6.
Under some circumstances Vignette applications that harness the Vignette API, specifically a 'NEEDS' command that follows a certain code path, may be prone to injection of arbitrary TCL code.
This could allow remote attackers to execute arbitrary commands with the privileges of the affected server. It has been reported that several of the default Vignette applications are prone to this issue.
This issue could also affect third-party applications that are developed for use with Vignette.
This issue was reported for Vignette StoryServer version 5 and version 6.
References
Vignette NEEDS Command TCL Code Injection Vulnerability
References:
References:
- How to Prevent Security Problems with the Tcl SET Command (VIGNETTE)
- Potential vulnerability in the NEEDS LOGIN Tcl command, how to fix (Vignette)
- Vignette Homepage (VIGNETTE)
- Vignette NEEDS LOGIN exploit (Bas Scheffers)
- Vignette TCL Injection (Ramon Pinuaga Cascales)
- Re: S21SEC-024 - Vignette TCL Injection (Stefan Bethke
) - S21SEC-024 - Vignette TCL Injection (S21SEC
)