what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

foxweb.txt

foxweb.txt
Posted Sep 6, 2003
Authored by Pokleyzz | Site scan-associates.net

Scan Associates Sdn Bhd Security Advisory - A buffer overflow vulnerability has been discovered in Foxweb 2.5 for Microsoft Windows that will allow a remote attacker to execute commands as the web server id.

tags | advisory, remote, web, overflow
systems | windows
SHA-256 | 1437120ee0c894dc2a4177fb6df3c7840922cfbe2b2abd05c1f3f8d85c291ae3

foxweb.txt

Change Mirror Download
SCAN Associates Sdn Bhd Security Advisory

Products: Foxweb 2.5 (http://www.foxweb.com)
Date: 5th September 2003
Author: pokleyzz <pokleyzz_at_scan-associates.net>
Contributors:
sk_at_scan-associates.net
shaharil_at_scan-associates.net
munir_at_scan-associates.net
URL: http://www.scan-associates.net

Summary: Foxweb 2.5 buffer in foxweb CGI and ISAPI extension

Description
========
FoxWeb is a Web application development tool, which can be used to
quickly and easily integrate your FoxPro and client-server databases
with the
Web and to build interactive Web applications for intranets or the
Internet. Take advantage of the fastest PC-based database engine and
ease of use
of Visual FoxPro to create dynamic Web content. Whether you are a
seasoned developer or a "newbie," FoxWeb provides the tools and resources
to help you create interactive applications in less time and with less
effort.

Details
======
There is buffer overflow in PATH_INFO for foxweb.dll and foxweb.exe
from foxweb 2.5. It will occur when user suppy overlong PATH_INFO
(over 3000 byte).
ex:
http://www.com/scripts/foxweb.dll/[3000 A's]

This stackbase overflow is easy to exploit and may lead to command
execution as webuser.

Proof of concept
============
[see attachment]

Vendor Response
============
Vendor has been contacted on 28th July 2003 and patch is available.
Login or Register to add favorites

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    69 Files
  • 14
    Nov 14th
    0 Files
  • 15
    Nov 15th
    0 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close