Apple iPhone Configuration Web Utility for windows目录遍历漏洞

QQ空间 新浪微博 微信 QQ facebook twitter
漏洞ID 1184541 漏洞类型 路径遍历
发布时间 2008-11-21 更新时间 2008-12-11
CVE编号 CVE-2008-5315 CNNVD-ID CNNVD-200812-035
漏洞平台 N/A CVSS评分 7.8
|漏洞来源
https://www.securityfocus.com/bid/32412
https://cxsecurity.com/issue/WLB-2008120083
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200812-035
|漏洞详情
iPhone是苹果公司(Apple.Inc,原苹果电脑)于2007年1月10日的全球WWDC07大会上发布的一款智能手机产品。运行在Windows上的AppleiPhoneConfigurationWebUtility1.0版本的网络界面中存在目录遍历漏洞。远程攻击者可以借助未明的方式,读取任意文件。
|漏洞EXP
Title

-----

DDIVRT-DDIVRT-2008-15 iPhone Configuration Web Utility 1.0 for Windows Directory Traversal

Severity

--------

High

Date Discovered

---------------

October 2, 2008

Discovered By

-------------

Digital Defense, Inc. Vulnerability Research Team

Credit: Corey LeBleu and r@b13$

Vulnerability Description

-------------------------

The iPhone Configuration Web Utility allows centralized management of iPhone configuration settings. The iPhone Configuration Web Utility 1.0 for Windows web interface is vulnerable to a common web directory traversal attack. Successful exploitation will result in arbitrary read-only file access outside of the iPhone Configuration Web Utility 1.0 web root.

Solution Description

--------------------

Filter network traffic so that only trusted users can access the web interface.

Tested Systems / Software (with versions)

------------------------------------------

Windows XP Professional

iPhone Configuration Web Utility 1.0 for Windows

Vendor Contact

--------------

Vendor Name: Apple Inc.

Vendor Website: www.apple.com
|受影响的产品
Apple iPhone Configuration Web Utility for Windows 1.0
|参考资料

来源:XF
名称:iphone-utility-httpget-dir-traversal(46807)
链接:http://xforce.iss.net/xforce/xfdb/46807
来源:BID
名称:32412
链接:http://www.securityfocus.com/bid/32412
来源:BUGTRAQ
名称:20081121DDIVRT-2008-15iPhoneConfigurationWebUtility1.0forWindowsDirectoryTraversal
链接:http://www.securityfocus.com/archive/1/archive/1/498559/100/0/threaded
来源:SREASON
名称:4681
链接:http://securityreason.com/securityalert/4681
来源:SECUNIA
名称:32852
链接:http://secunia.com/advisories/32852
来源:FULLDISC
名称:20081121DDIVRT-DDIVRT-2008-15iPhoneConfigurationWebUtility1.0forWindowsDirectoryTraversal
链接:http://lists.grok.org.uk/pipermail/full-disclosure/2008-November/065822.html
来源:BUGTRAQ
名称:20081205RE:DDIVRT-DDIVRT-2008-15iPhoneConfigurationWebUtility1.0forWindowsDirectoryTraversal
链接:http://archives.neohapsis.com/archives/bugtraq/2008-12/0061.html