Lucene search

K
seebugRootSSV:86554
HistoryJul 01, 2014 - 12:00 a.m.

Skybox Security 6.3.x - 6.4.x - Multiple Denial Of Service Issue

2014-07-0100:00:00
Root
www.seebug.org
22

EPSS

0.003

Percentile

65.9%

Skybox Security是美国Skybox Security公司的一套网络安全风险分析工具。该工具能够消除攻击源并对数据和服务提供保护措施。

Skybox Security 6.3.x至6.4.x版本中存在拒绝服务漏洞。攻击者可利用该漏洞导致受影响应用程序重启或关闭设备,造成拒绝服务。

# Exploit Title: [SKYBOX Security - DDOS]   
# Date: [22-Jan-2014] 
# Exploit Author: [Luigi Vezzoso] 
# Vendor Homepage: [http://www.skyboxsecurity.com] 
# Version: [Skybox View Appliances with ISO versions: 6.3.33-2.14, 6.3.31-2.14, 6.4.42-2.54, 6.4.45-2.56, 6.4.46-2.57] 
# Tested on: [Centos 6.4 kernel 2.6.32] 
# CVE : [CVE-2014-2085]   
#OVERVIEW A vulnerability has been found in some Skybox View Appliances’ Admin interfaces which would allow a potential malicious party to bypass the authentication mechanism and execute reboot and/or shutdown of appliance self   
#INTRODUCTION Skybox Security has a complete portfolio of security management tools that deliver the security intelligence needed to act fast to minimize risks and eliminate attack vectors. Based on a powerful risk analytics platform that links data from vulnerability scanners, threat intelligence feeds, firewalls and other network infrastructure devices – Skybox gives you context to prioritize risks accurately and automatically, in minutes.   
#VULNERABILITY DESCRIPTION It's possible to open and execute the reboot and shutdown script without autentication at the following links: https://1.1.1.1:444/scripts/commands/reboot?_=1111111111 https://1.1.1.1:444/scripts/commands/shutdown?_=1111111111 
#VERSIONS AFFECTED Skybox View Appliances with ISO versions: 6.3.33-2.14, 6.3.31-2.14, 6.4.42-2.54, 6.4.45-2.56, 6.4.46-2.57   
#SOLUTION Please refer to the vendor security advisor: Security Advisory 2014- 3-25-1   
#CREDITS Luigi Vezzoso email: [email protected]