| VID |
22329 |
| Severity |
30 |
| Port |
80, ... |
| Protocol |
TCP |
| Class |
WWW |
| Detailed Description |
The BadBlue server, according to its banner, has an unauthorized administrative access vulnerability. BadBlue is a P2P file sharing Web server distributed by Working Resources for Microsoft Windows operating systems. BadBlue versions 2.15 and earlier could allow a remote attacker to gain unauthorized administrative access to the server, caused by an input validation error in the 'ext.dll' component. By sending a specially-crafted URL request containing the LoadPage command followed by an arbitrary .hts file appended with illegal characters, a remote attacker could gain administrative control of the affected host. This could lead to unauthorized execution of administrative commands.
* Note: This check solely relied on the banner of the remote HTTP server to assess this vulnerability, so this might be a false positive.
* References: http://www.securityfocus.com/archive/1/319217
* Platforms Affected: Working Resources Inc., BadBlue Enterprise Edition 2.15 and earlier Working Resources Inc., BadBlue Personal Edition 2.15 and earlier Microsoft Windows Any version |
| Recommendation |
For BadBlue Personal Edition: Upgrade to the latest version of BadBlue (2.16 or later), available from the BadBlue Download Web site at http://www.badblue.com/down.htm |
| Related URL |
(CVE) |
| Related URL |
7387 (SecurityFocus) |
| Related URL |
11821 (ISS) |
|