Allaire Spectra 1.0 invoke.cfm Unauthenticated RAS Access Vulnerability
BID:955
Info
Allaire Spectra 1.0 invoke.cfm Unauthenticated RAS Access Vulnerability
| Bugtraq ID: | 955 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Jan 31 2000 12:00AM |
| Updated: | Jan 31 2000 12:00AM |
| Credit: | Publicized in Allaire Securityu BulletinASB00-004, released January 31, 2000. |
| Vulnerable: |
Allaire Spectra 1.0 |
| Not Vulnerable: | |
Discussion
Allaire Spectra 1.0 invoke.cfm Unauthenticated RAS Access Vulnerability
A fault in the invoke.cfm template will allow unauthenticated users to make use of the Remote Access Service. The parameter "bAuthenticated" can be passed to the server via a URL, form field, or WDDX packet, which will allow RAS usage for that user without requiring a username or password.
A fault in the invoke.cfm template will allow unauthenticated users to make use of the Remote Access Service. The parameter "bAuthenticated" can be passed to the server via a URL, form field, or WDDX packet, which will allow RAS usage for that user without requiring a username or password.
Exploit / POC
Allaire Spectra 1.0 invoke.cfm Unauthenticated RAS Access Vulnerability
see discussion
see discussion
Solution / Fix
Allaire Spectra 1.0 invoke.cfm Unauthenticated RAS Access Vulnerability
Solution:
Allaire has released a patch for this issue, available at:
http://download.allaire.com/patches/ASB00-04.zip
See the advisory in the 'credit' section for more information.
Solution:
Allaire has released a patch for this issue, available at:
http://download.allaire.com/patches/ASB00-04.zip
See the advisory in the 'credit' section for more information.
References
Allaire Spectra 1.0 invoke.cfm Unauthenticated RAS Access Vulnerability
References:
References: