TA-2003-06 Directory Transversal Vulnerability in iWeb Server 2

From: Rushjoat_private
Date: Mon Jun 23 2003 - 11:43:08 PDT

  • Next message: dong-h0un U: "[VulnWatch] GNATS (The GNU bug-tracking system) multiple buffer overflow vulnerabilities."

    TA-2003-06 Directory Transversal Vulnerability in iWeb Server 2
    contributed by: rushjo
    ====================================================================================== 
    
    
    Tripbit Security Advisory
    
    TA-2003-06 Directory Transversal Vulnerability in iWeb Server 2
    ====================================================================================== 
    
    
    
    
    PROGRAM: iWeb Server 2
    HOMEPAGE: http://www.ashleybrown.co.uk/iweb/
    VULNERABLE VERSIONS: 2
    RISK: High/Medium
    IMPACT: Directory Transversal Vulnerability
    RELEASE DATE: 2003-06
    
    
    ======================================================================================
    TABLE OF CONTENTS
    ====================================================================================== 
    
    
    
    
    1..........................................................DESCRIPTION
    2..............................................................DETAILS
    3............................................................SOLUTIONS
    4........................................................VENDOR STATUS
    5..............................................................CREDITS
    6...........................................................DISCLAIMER
    7...........................................................REFERENCES
    8.............................................................FEEDBACK
    
    
    1. DESCRIPTION
    ====================================================================================== 
    
    
    
    
    "The iWeb Mini Web Server is a mini web server designed for use on
    Intranets and for
    testing websites in a realistic environment."
    
    (This description is taken from the website of Ashley Brown)
    
    
    2. DETAILS
    ====================================================================================== 
    
    
    
    
    ¤ Directory Transversal Vulnerability:
    
    
    There is an other Directory Transversal Vulnerability in iWeb Server
    which allows
    an remote attackers to see the content of the requested file.
    
    
    for example:
    
    	  http://host/%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwindows\system.ini
    
    
    
    3. SOLUTIONS
    ====================================================================================== 
    
    
    
    
    No solution for the moment.
    
    
    
    5. VENDOR STATUS
    ====================================================================================== 
    
    
    
    
    The vendor has reportedly been notified. But the vendor told us that is an
    old bug. We don't think so.
    
    
    
    6. CREDITS
    ====================================================================================== 
    
    
    
    
    Discovered by posidron
    
    
    
    7. DISLAIMER
    ====================================================================================== 
    
    
    
    
    The information within this paper may change without notice. Use of
    this information constitutes acceptance for use in an AS IS condition.
    There are NO warranties with regard to this information. In no event
    shall the author be liable for any damages whatsoever arising out of
    or in connection with the use or spread of this information. Any use
    of this information is at the user's own risk.
    
    
    
    8. REFERENCES
    ====================================================================================== 
    
    
    
    
    - Original Version:
    http://www.tripbit.org
    
    
    9. FEEDBACK
    ======================================================================================
    
    
    Please send suggestions, updates, and comments to:
    
    
    Tripbit Security Advisory
    http://www.tripbit.org
    rushjoat_private
    posidronat_private
    



    This archive was generated by hypermail 2b30 : Mon Jun 23 2003 - 13:59:08 PDT