ID

VAR-200412-1171


CVE

CVE-2004-1813


TITLE

VocalTec VGW4/8 Telephony Gateway Remote Authentication Bypass Vulnerability

Trust: 0.9

sources: BID: 9876 // CNNVD: CNNVD-200412-427

DESCRIPTION

VocalTec VGW4/8 Gateway 8.0 allows remote attackers to bypass authentication via an HTTP request to home.asp with a trailing slash (/). The problem is due to a design error in the application that allows a user to access configuration pages without prior authentication. Successful exploitation of this issue may allow a remote attacker to gain control of the affected appliance via its web configuration tool. There is a vulnerability in VocalTec VGW4/8 Gateway version 8.0

Trust: 1.26

sources: NVD: CVE-2004-1813 // BID: 9876 // VULHUB: VHN-10242

AFFECTED PRODUCTS

vendor:vocaltecmodel:vgw4 8 telephony gatewayscope:eqversion:8.0

Trust: 1.6

vendor:vocaltecmodel:vgw4/8 telephony gatewayscope: - version: -

Trust: 0.3

sources: BID: 9876 // CNNVD: CNNVD-200412-427 // NVD: CVE-2004-1813

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2004-1813
value: HIGH

Trust: 1.0

CNNVD: CNNVD-200412-427
value: HIGH

Trust: 0.6

VULHUB: VHN-10242
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2004-1813
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.0

VULHUB: VHN-10242
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-10242 // CNNVD: CNNVD-200412-427 // NVD: CVE-2004-1813

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

sources: NVD: CVE-2004-1813

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200412-427

TYPE

Design Error

Trust: 0.9

sources: BID: 9876 // CNNVD: CNNVD-200412-427

EXPLOIT AVAILABILITY

sources: VULHUB: VHN-10242

EXTERNAL IDS

db:BIDid:9876

Trust: 2.0

db:NVDid:CVE-2004-1813

Trust: 1.7

db:CNNVDid:CNNVD-200412-427

Trust: 0.7

db:XFid:15476

Trust: 0.6

db:XFid:48

Trust: 0.6

db:BUGTRAQid:20040315 VOCALTEC GATEWAY 8 REVERSE DIRECTORY TRANSVERSAL + AUTHORIZATION BYPASS

Trust: 0.6

db:EXPLOIT-DBid:23813

Trust: 0.1

db:SEEBUGid:SSVID-77562

Trust: 0.1

db:VULHUBid:VHN-10242

Trust: 0.1

sources: VULHUB: VHN-10242 // BID: 9876 // CNNVD: CNNVD-200412-427 // NVD: CVE-2004-1813

REFERENCES

url:http://www.securityfocus.com/bid/9876

Trust: 1.7

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/15476

Trust: 1.1

url:http://marc.info/?l=bugtraq&m=107936739131657&w=2

Trust: 1.0

url:http://xforce.iss.net/xforce/xfdb/15476

Trust: 0.6

url:http://marc.theaimsgroup.com/?l=bugtraq&m=107936739131657&w=2

Trust: 0.6

url:http://www.vocaltec.com/html/telephony/gateway_4_8.shtml

Trust: 0.3

url:/archive/1/357437

Trust: 0.3

url:http://marc.info/?l=bugtraq&m=107936739131657&w=2

Trust: 0.1

sources: VULHUB: VHN-10242 // BID: 9876 // CNNVD: CNNVD-200412-427 // NVD: CVE-2004-1813

CREDITS

This issue has been reported by "Rafel Ivgi, The-Insider" <theinsider@012.net.il>.

Trust: 0.9

sources: BID: 9876 // CNNVD: CNNVD-200412-427

SOURCES

db:VULHUBid:VHN-10242
db:BIDid:9876
db:CNNVDid:CNNVD-200412-427
db:NVDid:CVE-2004-1813

LAST UPDATE DATE

2024-08-14T14:53:47.309000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-10242date:2017-07-11T00:00:00
db:BIDid:9876date:2004-03-15T00:00:00
db:CNNVDid:CNNVD-200412-427date:2005-10-20T00:00:00
db:NVDid:CVE-2004-1813date:2017-07-11T01:31:22.187

SOURCES RELEASE DATE

db:VULHUBid:VHN-10242date:2004-12-31T00:00:00
db:BIDid:9876date:2004-03-15T00:00:00
db:CNNVDid:CNNVD-200412-427date:2004-12-31T00:00:00
db:NVDid:CVE-2004-1813date:2004-12-31T05:00:00