Korean
<< Back
VID 22329
Severity 30
Port 80, ...
Protocol TCP
Class WWW
Detailed Description The BadBlue server, according to its banner, has an unauthorized administrative access vulnerability. BadBlue is a P2P file sharing Web server distributed by Working Resources for Microsoft Windows operating systems. BadBlue versions 2.15 and earlier could allow a remote attacker to gain unauthorized administrative access to the server, caused by an input validation error in the 'ext.dll' component. By sending a specially-crafted URL request containing the LoadPage command followed by an arbitrary .hts file appended with illegal characters, a remote attacker could gain administrative control of the affected host. This could lead to unauthorized execution of administrative commands.

* Note: This check solely relied on the banner of the remote HTTP server to assess this vulnerability, so this might be a false positive.

* References:
http://www.securityfocus.com/archive/1/319217

* Platforms Affected:
Working Resources Inc., BadBlue Enterprise Edition 2.15 and earlier
Working Resources Inc., BadBlue Personal Edition 2.15 and earlier
Microsoft Windows Any version
Recommendation For BadBlue Personal Edition:
Upgrade to the latest version of BadBlue (2.16 or later), available from the BadBlue Download Web site at http://www.badblue.com/down.htm
Related URL (CVE)
Related URL 7387 (SecurityFocus)
Related URL 11821 (ISS)