evolve or die

Netscape.Publisher.ACL.txt

Netscape.Publisher.ACL.txt
Posted Feb 12, 2001
Site netscape.com

Netscape Enterprise Server 3.5.1 (Publisher) has a problem with the default ACL settings that could allow an intruder to view/download "non-public" files in the web root.

tags | exploit, web, root
MD5 | 606350da577109d146a4a0d63edb271d

Netscape.Publisher.ACL.txt

Change Mirror Download
Vendor: Netscape
Product: Enterprise Server 3.5.1 (and others?)
Specifics: Netscape Web Publisher

Vulnerability Briefing: A very wide problem with ACL
settings and default
settings with Netscape Enterprise Server (Publisher).

Description:
With the default installation of Netscape Enterprise Server
3.5.1 (and
others possibly), a java based package called the "Netscape
Web Publisher"
is included. This program is web based and is also linked on
the default
index which comes with Enterprise Server.

After running an extensive search of the default index
content, I have
found various sites running Publisher, with a poor
application
of the ACL (Access Control Lists) options of Enterprise
Server (about 90%
of the sites).

Such actions that an intruder could apply would be the
search of web index
content, web root directory listing, and the
viewing/downloading of
"non-public" files in the web root.

Here are descriptors which provides a criteria of what
should be
considered vulnerable:

-The default Enterprise Server index is public
-http://www.poorperms.null/publisher is publicly available
-Proper and more secure ACL selections

The third descriptor is one quite important. With Enterprise
Server, I
believe that you have the option of picking USER/PASS
authentication vs.
certificate based authentication. Many of these sites pick
the later,
certificate authentication. An intruder could simply use a
proxy and/or
use other cloaking techniques, accept the certificate, and
continue on to
use the Publisher.

*Solution*
The solution(s) is one that is parted, where both Netscape
and the
customer/administrator could take part to provide solutions
to this on
going problem.

Fixes:
-Remove the default index and any default programs you do
not use (such as
Publisher, and Publisher Search)
-If Publisher must be used, USER/PASS methods are highly
recommended
rather than certificates
-Use the ACL settings more efficiently (directory perms,
etc.)

For more information on how to take control of ACL options,
refer to the
help directory which comes with Enterprise Server, or visit
the vendor's
website at http://www.netscape.com.


Adios,
Charles Chear

Comments

RSS Feed Subscribe to this comment feed

No comments yet, be the first!

Login or Register to post a comment

File Archive:

May 2012

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    May 1st
    37 Files
  • 2
    May 2nd
    53 Files
  • 3
    May 3rd
    33 Files
  • 4
    May 4th
    4 Files
  • 5
    May 5th
    10 Files
  • 6
    May 6th
    17 Files
  • 7
    May 7th
    19 Files
  • 8
    May 8th
    36 Files
  • 9
    May 9th
    34 Files
  • 10
    May 10th
    35 Files
  • 11
    May 11th
    20 Files
  • 12
    May 12th
    18 Files
  • 13
    May 13th
    11 Files
  • 14
    May 14th
    27 Files
  • 15
    May 15th
    58 Files
  • 16
    May 16th
    54 Files
  • 17
    May 17th
    25 Files
  • 18
    May 18th
    53 Files
  • 19
    May 19th
    9 Files
  • 20
    May 20th
    15 Files
  • 21
    May 21st
    25 Files
  • 22
    May 22nd
    32 Files
  • 23
    May 23rd
    35 Files
  • 24
    May 24th
    26 Files
  • 25
    May 25th
    25 Files
  • 26
    May 26th
    0 Files
  • 27
    May 27th
    0 Files
  • 28
    May 28th
    0 Files
  • 29
    May 29th
    0 Files
  • 30
    May 30th
    0 Files
  • 31
    May 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2012 Packet Storm. All rights reserved.

close