Short Name |
SMTP:SMTP-URI-INJ |
---|---|
Severity |
Medium |
Recommended |
No |
Category |
SMTP |
Keywords |
Multiple Browser URI Handlers Command Injection Vulnerabilities |
Release Date |
2007/10/19 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects an attempt to leverage a known vulnerability in the way that some Microsoft Windows based software handles certain malformed URLs. An attacker can use a specially crafted URL to execute arbitrary commands on the affected system. Note that only Windows XP and Windows 2003 systems with Internet Explorer 7 are affected.
Multiple browsers are prone to vulnerabilities that let attackers inject commands through various protocol handlers. Exploiting these issues allows remote attackers to pass and execute arbitrary commands and arguments through processes such as 'cmd.exe' by employing various URI handlers. An attacker can exploit these issues to carry out various attacks by executing arbitrary commands on a vulnerable computer. Exploiting these issues would permit remote attackers to influence command options that can be called through protocol handlers and to execute commands with the privileges of a user running the application. Successful attacks may result in a variety of consequences, including remote unauthorized access. Mozilla Firefox 2.0.0.5, 3.0a6 and Netscape Navigator 9 are reported vulnerable to these issues. Other versions of these browsers and other vendors' browsers may also be affected.