Sun AnswerBook2未认证管理脚本访问漏洞

Sun AnswerBook2未认证管理脚本访问漏洞

漏洞ID 1106898 漏洞类型 权限许可和访问控制
发布时间 2002-08-02 更新时间 2002-12-31
图片[1]-Sun AnswerBook2未认证管理脚本访问漏洞-安全小百科CVE编号 CVE-2002-2425
图片[2]-Sun AnswerBook2未认证管理脚本访问漏洞-安全小百科CNNVD-ID CNNVD-200212-626
漏洞平台 Solaris CVSS评分 10.0
|漏洞来源
https://www.exploit-db.com/exploits/21677
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200212-626
|漏洞详情
SunAnswerBook21.2至1.4.2版本存在漏洞。远程攻击者可以借助直接请求执行如(1)AdminViewError和(2)AdminAddadmin脚本的管理脚本。
|漏洞EXP
source: http://www.securityfocus.com/bid/5383/info

Sun Microsystems AnswerBook2 allows users to view Sun documentation through a web browser, and is available for Solaris.

AnswerBook2 includes an administrative web interface. Reportedly, it is possible to access these scripts without authorization, and add a new administrative user of the AnswerBook2 system. 

http://localhost:8888/ab2/@AdminViewError

http://localhost:8888/ab2/@AdminAddadmin?uid=foo&password=bar&re_password=bar
|参考资料

来源:XF
名称:answerbook2-admin-scripts-access(9756)
链接:http://www.iss.net/security_center/static/9756.php
来源:BID
名称:5383
链接:http://www.securityfocus.com/bid/5383
来源:BUGTRAQ
名称:20020801SunAnswerBook2formatstringandothervulnerabilities
链接:http://archives.neohapsis.com/archives/bugtraq/2002-07/0486.html

相关推荐: arpwatch /tmp File Race Condition Vulnerability

arpwatch /tmp File Race Condition Vulnerability 漏洞ID 1103572 漏洞类型 Race Condition Error 发布时间 2001-01-10 更新时间 2001-01-10 CVE编号 N/A C…

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享