Elektropost EPIServer Multiple Vulnerabilities
BID:9223
Info
Elektropost EPIServer Multiple Vulnerabilities
| Bugtraq ID: | 9223 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 15 2003 12:00AM |
| Updated: | Dec 15 2003 12:00AM |
| Credit: | The disclosure of this issue has been credited to [email protected]. |
| Vulnerable: |
Elektropost EPIServer 4.2 Elektropost EPIServer 4.1 Elektropost EPIServer 4.0 Elektropost EPIServer 3.3 Elektropost EPIServer 3.2 |
| Not Vulnerable: | |
Discussion
Elektropost EPIServer Multiple Vulnerabilities
Multiple vulnerabilities were reported in EPIServer that include directory traversal, information disclosure, and denial of service. These issue result from insufficient sanitization of user-supplied input.
Specific version information was not provided in the report. All versions are assumed to be vulnerable until further information is made public.
These issues are currently undergoing further analysis. This cumulative BID will be separated into individual entries when analysis is complete.
Multiple vulnerabilities were reported in EPIServer that include directory traversal, information disclosure, and denial of service. These issue result from insufficient sanitization of user-supplied input.
Specific version information was not provided in the report. All versions are assumed to be vulnerable until further information is made public.
These issues are currently undergoing further analysis. This cumulative BID will be separated into individual entries when analysis is complete.
Exploit / POC
Elektropost EPIServer Multiple Vulnerabilities
The following proof of concept examples have been provided:
http://www.example.com/templates/Page.aspx?id=20691
http://www.example.com/news.asp?id=7661
http://www.example.com/system/linkurl.asp?root=../../../
http://www.example.com/templates/CommonPage____19461.asp
The following proof of concept examples have been provided:
http://www.example.com/templates/Page.aspx?id=20691
http://www.example.com/news.asp?id=7661
http://www.example.com/system/linkurl.asp?root=../../../
http://www.example.com/templates/CommonPage____19461.asp
Solution / Fix
Elektropost EPIServer Multiple Vulnerabilities
Solution:
The vendor has released a fix for the directory traversal vulnerability; the vendor reports that customers and partners were notified of this fix availability information on December 16 and December 17 of 2003. This fix can also be obtained through vendor support channels ([email protected]).
EPiServer version 4.20 has also been released to fix the information disclosure vulnerabilities. Please contact the vendor for further information in regards to obtaining this update.
Solution:
The vendor has released a fix for the directory traversal vulnerability; the vendor reports that customers and partners were notified of this fix availability information on December 16 and December 17 of 2003. This fix can also be obtained through vendor support channels ([email protected]).
EPiServer version 4.20 has also been released to fix the information disclosure vulnerabilities. Please contact the vendor for further information in regards to obtaining this update.
References
Elektropost EPIServer Multiple Vulnerabilities
References:
References: