Description
Directory traversal vulnerability in the AuthCheck filter in the Admin Console in Openfire 3.6.0a and earlier allows remote attackers to bypass authentication and access the admin interface via a .. (dot dot) in a URI that matches the Exclude-Strings list, as demonstrated by a /setup/setup-/.. sequence in a URI.
Affected products
- igniterealtime / Openfire3.6.0a
- igniterealtime / Openfire2.6.0 – 2.6.0
- igniterealtime / Openfire2.6.1 – 2.6.1
- igniterealtime / Openfire2.6.2 – 2.6.2
- igniterealtime / Openfire3.0.0 – 3.0.0
- igniterealtime / Openfire3.0.1 – 3.0.1
- igniterealtime / Openfire3.1.0 – 3.1.0
- igniterealtime / Openfire3.1.1 – 3.1.1
- igniterealtime / Openfire3.2.0 – 3.2.0
- igniterealtime / Openfire3.2.1 – 3.2.1
- igniterealtime / Openfire3.2.2 – 3.2.2
- igniterealtime / Openfire3.2.3 – 3.2.3
- igniterealtime / Openfire3.2.4 – 3.2.4
- igniterealtime / Openfire3.3.0 – 3.3.0
- igniterealtime / Openfire3.3.2 – 3.3.2
- igniterealtime / Openfire3.3.3 – 3.3.3
- igniterealtime / Openfire3.4.0 – 3.4.0
- igniterealtime / Openfire3.4.1 – 3.4.1
- igniterealtime / Openfire3.4.3 – 3.4.3
- igniterealtime / Openfire3.4.4 – 3.4.4
- igniterealtime / Openfire3.4.5 – 3.4.5
- igniterealtime / Openfire3.5.0 – 3.5.0
- igniterealtime / Openfire3.5.1 – 3.5.1
- igniterealtime / Openfire3.5.2 – 3.5.2
- igniterealtime / Openfire3.6.0 – 3.6.0
References
- EXPLOIThttps://www.exploit-db.com/exploits/7075
- VENDOR_ADVISORYhttp://www.andreas-kurtz.de/advisories/AKADV2008-001-v1.0.txt
- MISChttp://www.igniterealtime.org/builds/openfire/docs/latest/changelog.html
- VENDOR_ADVISORYhttp://secunia.com/advisories/32478
- MISChttp://osvdb.org/49663
- MISChttp://www.andreas-kurtz.de/archives/63
- MISChttp://www.igniterealtime.org/issues/browse/JM-1489
- MISChttp://www.securityfocus.com/bid/32189
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/46488
- MISChttp://www.securityfocus.com/archive/1/498162/100/0/threaded
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2008/3061
Updated 44m ago · 2 sources