Rightfax Webclient Predictable Session Number Vulnerability
BID:953
Info
Rightfax Webclient Predictable Session Number Vulnerability
| Bugtraq ID: | 953 |
| Class: | Serialization Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Feb 01 2000 12:00AM |
| Updated: | Feb 01 2000 12:00AM |
| Credit: | Posted to bugtraq on Feb 1, 2000 by ET LoWNOISE <[email protected]>. |
| Vulnerable: |
AVT Rightfax 5.2 |
| Not Vulnerable: | |
Discussion
Rightfax Webclient Predictable Session Number Vulnerability
The RightFax server uses a session ID to track users' connections to web-based fax services. This ID is predictable and legitimate session IDs can be generated arbitrarily. It is included in the URL, and by generating a session ID in use by another user it is possible to hijack their connection. This leads to the ability to send and read faxes as that user.
The RightFax server uses a session ID to track users' connections to web-based fax services. This ID is predictable and legitimate session IDs can be generated arbitrarily. It is included in the URL, and by generating a session ID in use by another user it is possible to hijack their connection. This leads to the ability to send and read faxes as that user.
Exploit / POC
Rightfax Webclient Predictable Session Number Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Rightfax Webclient Predictable Session Number Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].