OSVDB ID: 29010

Title: CA eSCC / eTrust Audit Unspecified Arbitrary File Manipulation

Info

Disclosure

Sep 20, 2006

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Description

eTrust Security Command Center contains a flaw that allows a remote attacker to read and delete files outside of the web path. The issue is due to eSMPAuditServlet not properly sanitizing user input, specifically directory traversal style attacks (../../) supplied via the eSCCAdHocHtmlFile parameter.

Classification

Location: Remote / Network Access
Attack Type: Denial of Service, Information Disclosure, Input Manipulation
Impact: Loss of Confidentiality, Loss of Integrity, Loss of Availability
Solution: Patch / RCS
Exploit: Exploit Public
Disclosure: OSVDB Verified, Vendor Verified
OSVDB: Security Software

Solution

Currently, there are no known workarounds or upgrades to correct this issue. However, CA has released a patch to address this vulnerability.

Products

Computer Associates

Security Command Center

1.0
r8
r8 SP1 CR1
r8 SP1 CR2

References

Credit

  • Patrick Webster - patrickaushack.com - aushack


Direct URL: http://osvdb.org/29010