PT-2009-3666 · Hannon Hill+1 · Hannon Hill Cascade Server+1
Published
2009-03-25
·
Updated
2018-10-10
·
CVE-2009-1088
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Hannon Hill Cascade Server version 5.7 and other versions
Description
The issue allows remote authenticated users to execute arbitrary programs or Java code. This is achieved by using a crafted XSLT stylesheet that includes
extension elements and extension functions, which trigger code execution by Xalan-Java. An example of exploitation is demonstrated using xalan://java.lang.Runtime.Recommendations
For Hannon Hill Cascade Server version 5.7 and other affected versions, consider restricting access to XSLT stylesheets to prevent the execution of arbitrary code until a patch is available. As a temporary workaround, disabling the use of
extension elements and extension functions in XSLT stylesheets may help minimize the risk of exploitation.Exploit
Fix
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Hannon Hill Cascade Server
Xalan-Java