PT-2009-5027 · Sonicwall+6 · Sonicwall E-Class Ssl Vpn+7

David Warren

+3

·

Publicado

2009-12-04

·

Atualizado

2018-10-10

·

CVE-2009-2631

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Stonesoft StoneGate (affected versions not specified) Cisco ASA (affected versions not specified) SonicWALL E-Class SSL VPN (affected versions not specified) SonicWALL SSL VPN (affected versions not specified) SafeNet SecureWire Access Gateway (affected versions not specified) Juniper Networks Secure Access (affected versions not specified) Nortel CallPilot (affected versions not specified) Citrix Access Gateway (affected versions not specified)
Description The issue allows remote attackers to conduct cross-site scripting attacks, read cookies from other domains, access the Web VPN session to gain internal resources, perform key logging, and conduct other attacks. This is due to the products retrieving content from remote URLs and rewriting them to appear as if they originated from the VPN's domain, violating the same origin policy.
Recommendations For Stonesoft StoneGate, consider restricting access to the same domain as the VPN to minimize the risk of exploitation. For Cisco ASA, restrict access to the same domain as the VPN to prevent cross-site scripting attacks and unauthorized access to internal resources. For SonicWALL E-Class SSL VPN and SonicWALL SSL VPN, limit the ability of the VPN to retrieve and rewrite content from remote URLs to prevent attacks. For SafeNet SecureWire Access Gateway, implement configuration changes to restrict access to the VPN's domain and prevent violation of the same origin policy. For Juniper Networks Secure Access, Nortel CallPilot, and Citrix Access Gateway, apply similar restrictions and configuration changes to prevent exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2009-2631

Produtos afetados

Cisco Asa
Citrix Access Gateway
Juniper Networks Secure Access
Nortel Callpilot
Safenet Securewire Access Gateway
Sonicwall E-Class Ssl Vpn
Sonicwall Ssl Vpn
Stonesoft Stonegate