PT-2009-1978 · Ignite Realtime · Openfire

Andreas Kurtz

·

Publicado

2009-03-23

·

Atualizado

2018-10-11

·

CVE-2008-6508

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Openfire versions 3.6.0a and earlier
Description A directory traversal issue in the AuthCheck filter of the Admin Console allows remote attackers to bypass authentication and access the admin interface by including a .. (dot dot) in a URI. This can be achieved by crafting a specific URI sequence, such as /setup/setup-/.., which matches the Exclude-Strings list.
Recommendations For Openfire versions 3.6.0a and earlier, consider restricting access to the Admin Console until a fix is available. As a temporary workaround, disabling the AuthCheck filter may prevent exploitation, but this should be done with caution as it may have unintended consequences on the security of the Admin Console. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-6508

Produtos afetados

Openfire