[20980] in bugtraq
[SNS Advisory No.30] Trend Micro InterScan VirusWall for Windows NT 3.51 reconfiguration without authentication
daemon@ATHENA.MIT.EDU (SNS Advisory)
Tue Jun 12 14:23:54 2001
Date: Tue, 12 Jun 2001 17:13:26 +0900
From: SNS Advisory <snsadv@lac.co.jp>
To: BUGTRAQ <BUGTRAQ@securityfocus.com>
Message-Id: <20010612170908.6730.SNSADV@lac.co.jp>
MIME-Version: 1.0
Content-Type: text/plain; charset="US-ASCII"
Content-Transfer-Encoding: 7bit
SNS Advisory No.30
Trend Micro InterScan VirusWall for Windows NT 3.51 reconfiguration
without authentication
Problem first discovered: 24 May 2001
Published: 12 Jun 2001
Last Updated:12 Jun 2001
-----------------------------------------------------------------------
Overview
---------
It is possible for a remote user to improperly gain access to admin
functions of InterScan VirusWall for Windows NT.
Problem Description
--------------------
To change configurations via web browser, access to following URL:
http://VirusWall/interscan/cgi-bin/interscan.dll
Then, no authentication is required and any remote user can change
configuration setting.
Tested Version
---------------
InterScan VirusWall for Windows NT 3.51J Japanese
InterScan VirusWall for Windows NT 3.51 English
Tested OS
----------
Windows NT 4.0 Server SP6a [English Version]
Windows NT 4.0 Server SP6a [Japanese Version]
Patch Information
------------------
Trend Micro support team responded nothing.
Until the patch will be released, set up access control to refuse access
to servers in which InterScan VirusWall is installed by non-administrative
user.
Discovered by
--------------
Nobuo Miwa (LAC / n-miwa@lac.co.jp)
Disclaimer
-----------
All information in this advisories are subject to change without any
advanced notices neither mutual consensus, and each of them is released
as it is. LAC Co.,Ltd. is not responsible for any risks of occurrences
caused by applying those information.
References
----------
Archive of this advisory:
http://www.lac.co.jp/security/english/snsadv_e/30_e.html
SNS Advisory:
http://www.lac.co.jp/security/english/snsadv_e/
LAC:
http://www.lac.co.jp/security/english/
------------------------------------------------------------------
Secure Net Service(SNS) Security Advisory <snsadv@lac.co.jp>
Computer Security Laboratory, LAC http://www.lac.co.jp/security/