发布时间 :2003-10-30 00:00:00
修订时间 :2008-09-05 16:36:12

[原文]FlexWATCH Network video server 132 allows remote attackers to bypass authentication and gain administrative privileges via an HTTP request to aindex.htm that contains double leading slashes (//).

[CNNVD]Seyeon FlexWATCH Network Video Server未授权管理访问漏洞(CNNVD-200310-088)

        Seyeon FlexWATCH Network Video Server是一款视频服务程序。
        Seyeon FlexWATCH网络视频服务程序存在访问验证错误,远程攻击者可以利用这个漏洞未授权访问管理员接口。

- CVSS (基础分值)

CVSS分值: 10 [严重(HIGH)]
机密性影响: COMPLETE [完全的信息泄露导致所有系统文件暴露]
完整性影响: COMPLETE [系统完整性可被完全破坏]
可用性影响: COMPLETE [可能导致系统完全宕机]
攻击复杂度: LOW [漏洞利用没有访问限制 ]
攻击向量: [--]
身份认证: NONE [漏洞利用无需身份认证]

- CPE (受影响的平台与产品)


- OVAL (用于检测的技术细节)


- 官方数据库链接
(官方数据源) MITRE
(官方数据源) NVD
(官方数据源) CNNVD

- 其它链接及资源
(VENDOR_ADVISORY)  XF  flexwatch-slash-admin-access(13567)
(UNKNOWN)  BID  8942

- 漏洞信息

Seyeon FlexWATCH Network Video Server未授权管理访问漏洞
危急 访问验证错误
2003-10-30 00:00:00 2005-10-20 00:00:00
        Seyeon FlexWATCH Network Video Server是一款视频服务程序。
        Seyeon FlexWATCH网络视频服务程序存在访问验证错误,远程攻击者可以利用这个漏洞未授权访问管理员接口。

- 公告与补丁


- 漏洞信息 (23317)

Seyeon FlexWATCH Network Video Server 2.2 Unauthorized Administrative Access Vulnerability (EDBID:23317)
hardware remote
2003-10-31 Verified
0 slaizer
N/A [点击下载]

It has been reported that FlexWATCH Network Video Server may be prone to an access validation error that may allow a remote attacker to gain administrative access to the system. The problem is reported to present itself when an attacker attempts to access the administrative interface using a specially crafted URL containing two slash '/' characters.

Successful exploitation of this issue may allow a remote attacker to gain administrator level privileges to the server. This may lead to user accounts and system configuration modifications.

FlexWATCH Network Video Server Model 132 has been reported to be prone to this issue, however other versions may be affected as well.		

- 漏洞信息

Sayeon FlexWATCH Double-Slash Authentication Bypass

- 漏洞描述

FlexWATCH Network Video Server contains a flaw that may allow a malicious user to bypass the authentication and gain access to the embedded web server. The issue is triggered when two forward-slash characters are used when accessing the administrative webpage. It is possible that the flaw may allow an authorize user to reconfigure the server, manage user accounts, and view the video feeds.

- 时间线

2003-10-26 2003-10-26
2003-10-26 Unknow

- 解决方案

The vendor has released firmware version 2.2 to fix this particular vulnerability, however another method of bypassing authentication was discovered almost immediately afterwards. As of the time of this writing (January 3rd, 2004) there is no available patch from the vendor which adequately protects this server. If the security of this system is critical, it should be placed behind a packet filter or firewall.

- 相关参考

- 漏洞作者

Unknown or Incomplete