Tiny Personal Firewall出站数据包绕过漏洞

Tiny Personal Firewall出站数据包绕过漏洞

漏洞ID 1106531 漏洞类型 设计错误
发布时间 2001-12-06 更新时间 2005-10-20
图片[1]-Tiny Personal Firewall出站数据包绕过漏洞-安全小百科CVE编号 CVE-2001-1549
图片[2]-Tiny Personal Firewall出站数据包绕过漏洞-安全小百科CNNVD-ID CNNVD-200112-160
漏洞平台 Windows CVSS评分 2.1
|漏洞来源
https://www.exploit-db.com/exploits/21169
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200112-160
|漏洞详情
TinyPersonalFirewall1.0和2.0版本存在漏洞。本地用户借助非标准TCP包创建的非Windows协议适配器从而绕过过滤。
|漏洞EXP
source: http://www.securityfocus.com/bid/3647/info

Due to a common design error, it may be possible for outbound packets to bypass packet filtering in many personal firewalls.

Many of these applications only block packets created by the standard Windows protocol adapter. It is possible for a user with administrative privileges to create packets with other protocol adapters that are not evaluated against the personal firewall rules when transmitted.

Exploitation will result in a violation of security policy.

Tiny Personal Firewall, ZoneAlarm and ZoneAlarm Pro are confirmed vulnerable. It is believed that other applications similar in design may also be vulnerable. 

https://github.com/offensive-security/exploit-database-bin-sploits/raw/master/bin-sploits/21169.zip
|参考资料

来源:BID
名称:3647
链接:http://www.securityfocus.com/bid/3647
来源:XF
名称:zonealarm-tiny-bypass-filter(7671)
链接:http://www.iss.net/security_center/static/7671.php
来源:BUGTRAQ
名称:20011205Flawedoutboundpacketfilteringinvariouspersonalfirewalls
链接:http://archives.neohapsis.com/archives/bugtraq/2001-12/0056.html

相关推荐: Sun Solaris RPCbind Unspecified Denial of Service Vulnerability

Sun Solaris RPCbind Unspecified Denial of Service Vulnerability 漏洞ID 1100324 漏洞类型 Unknown 发布时间 2003-04-28 更新时间 2003-04-28 CVE编号 N/…

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享