exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

Sybase Afaria 6.0 Cross Site Request Forgery

Sybase Afaria 6.0 Cross Site Request Forgery
Posted Dec 21, 2010
Authored by Knud | Site nsense.fi

Sybase Afaria version 6.0 suffers from cross site request forgery vulnerabilities.

tags | exploit, vulnerability, csrf
SHA-256 | 0fdfab6c5149f5c8a24dc2ddf5111eb22b65af7ff7790df17a9f9cb42a592af4

Sybase Afaria 6.0 Cross Site Request Forgery

Change Mirror Download
       nSense Vulnerability Research Security Advisory NSENSE-2010-004
---------------------------------------------------------------

Affected Vendor: SAP
Affected Product: Sybase Afaria 6.0
Platform: Windows
Impact: User assisted code execution via CSRF
Vendor response: Patch
CVE: None
Credit: Knud

Technical details
---------------------------------------------------------------

"Afaria is the industry's most powerful and flexible mobile
device management and security solution for the enterprise.
Afaria provides you with a single administrative console to
centrally manage, secure and deploy mobile data, applications
and devices"

The web management interface does not validate the origin of
administrator requests thus it is vulnerable to Cross Site
Request Forgery.

Successful exploitation may allow an attacker to execute code
on the target system via custom malicious event handlers
utilizing UNC paths.

Proof of concept:
http://<target>/AfariaAdmin/WebForms/ErrorHandler.aspx?msg=csrf
&ReloadLink=False

Solution
---------------------------------------------------------------
* Afaria 6.0 Service Pack 1 Hot Fix 28 (Administrator Only)
http://frontline.sybase.com/support/fileDownload.aspx?ID=2133

Release Notes
http://frontline.sybase.com/support/downloads/Afaria/6_0_SP1/
60Sp1AfariaFx28/60Sp1AfariaFx28.htm

* Afaria 6.5 (there are two parts to Afaria 6.5 Hot Fix 55)
Server
http://frontline.sybase.com/support/fileDownload.aspx?ID=2142

Administrator
http://frontline.sybase.com/support/fileDownload.aspx?ID=2143

Release Notes
http://frontline.sybase.com/support/downloads/Afaria/6_5
/65AfariaFx55/65AfariaFx55Admin/65AfariaFx55.htm


Timeline:
August 21st Contacted vendor PSIRT
September 2nd Vendor responded. Patch confirmed
September 2nd Inquired patch release date
September 2nd Vendor responded. No release date yet
available.
September 22nd Status update request sent to vendor
September 23rd Vendor responded. No release date available.
October 6th Status update request sent to vendor
October 7th Vendor responded. The patch had already been
released
October 7th Inquired vendor about attribution
October 7th Vendor responded. Research page under
construction.
November 9th Vendor inquired about attribution details
November 9th Attribution details sent to vendor
November 10th Vendor responded.
December 20th Advisory published

Links:
http://www.sdn.sap.com/irj/sdn/index?rid=/webcontent/uuid/
c05604f6-4eb3-2d10-eea7-ceb666083a6a


http://www.nsense.fi http://www.nsense.dk


$$s$$$$s. ,s$$$$s ,S$$$$$s. $$s$$$$s. ,s$$$$s ,S$$$$$s.
$$$ `$$$ ($$( $$$ `$$$ $$$ `$$$ ($$( $$$ `$$$
$$$ $$$ `^$$s. $$$$$$$$$ $$$ $$$ `^$$s. $$$$$$$$$
$$$ $$$ )$$) $$$ $$$ $$$ )$$) $$$
$$$ $$$ ^$$$$$$7 `7$$$$$P $$$ $$$ ^$$$$$$7 `7$$$$$P

D r i v e n b y t h e c h a l l e n g e _
Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close