Short Name |
HTTP:STC:IBM-OMNIFIND-CSRF |
|---|---|
Severity |
Medium |
Recommended |
No |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
IBM Omnifind Cross Site Request Forgery |
Release Date |
2012/11/05 |
Update Number |
2200 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known cross-site Request Forgery vulnerability against IBM Omnifind. It is due to insufficient validation of user-supplied input. Attackers can steal cookie-based authentication credentials and launch other attacks.
IBM OmniFind is prone to the following vulnerabilities: 1. Cross-site scripting 2. Cross-site request forgery 3. Session fixation 4. Session impersonation 5. Remote buffer overflow 6. Privilege escalation 7. Security bypass 8. Information disclosure 9. Denial of service An attacker may exploit these issues to execute arbitrary script code in the context of the application, steal administrator authentication credentials, execute arbitrary code with root privileges, escalate privileges, bypass security restrictions and perform unauthorized actions, disclose sensitive information, or perform denial-of-service attacks. IBM OmniFind versions 8.5 and 9.0 are affected; other versions may also be vulnerable. This BID is being retired. The following individual records exist to better document the issues: 44937 IBM OmniFind Domain Root Path Cookie Security Bypass Vulnerability 44939 IBM OmniFind 'password' Field Remote Buffer Overflow Vulnerability 44940 IBM OmniFind 'command' Parameter Cross Site Scripting Vulnerability 44941 IBM OmniFind Crawler Component Denial of Service Vulnerability 44942 IBM OmniFind Remote Information Disclosure Vulnerability 44943 IBM OmniFind Session-Fixation Vulnerability 44944 IBM OmniFind 'esRunCommand' and 'estaskwrapper' Multiple Local Privilege Escalation Vulnerabilities 44945 IBM OmniFind 'ESAdmin/security.do' Cross Site Request Forgery Vulnerability 44946 IBM OmniFind Session-Impersonation Weakness 44948 IBM OmniFind 'ESSearchApplication' Security Bypass Vulnerability