FortiGuard Center

FortiGuard Advisory (FGA-2007-14)



Remote Code Execution Vulnerability in CA Host-Based Intrusion Prevention System Server
2007.November.14

Fortinet Global Security Research Team Discovers a Vulnerability Affecting CA Host Based Intrusion Prevention System Server.

Summary:

The vulnerability is due to raw request data being displayed in the logging web-based interface without prior sanitization. An attacker can therefore craft specific HTTP requests to execute arbitrary client code in the context of the web browser used by an administrator to browse logs.

Impact:

Execution of arbitrary client-side code in the browser's context, which, among other attack scenarios, may allow an attacker to re-configure the targeted CA Host Based Intrusion Prevention System Server to his advantage.

Risk:

Medium

Software affected:

  • CA Host-Based Intrusion Prevention System (CA HIPS) R8

Solution:

Users of CA Host Based Intrusion Prevention System Server should apply the vendor supplied updates. Here.

Reference:

  • CVE ID: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5472

Acknowledgment:

Fortinet Global Security Research Team.

Disclaimer:

Although Fortinet has attempted to provide accurate information in these materials, Fortinet assumes no legal responsibility for the accuracy or completeness of the information. More specific information is available on request from Fortinet. Please note that Fortinet's product information does not constitute or contain any guarantee, warranty or legally binding representation, unless expressly identified as such in a duly signed writing.

About Fortinet ( www.fortinet.com ):

Fortinet is the pioneer and leading provider of ASIC-accelerated unified threat management, or UTM, security systems, which are used by enterprises and service providers to increase their security while reducing total operating costs. Fortinet solutions were built from the ground up to integrate multiple levels of security protection--including firewall, antivirus, intrusion prevention, VPN, spyware prevention and anti-spam -- designed to help customers protect against network and content level threats. Leveraging a custom ASIC and unified interface, Fortinet solutions offer advanced security functionality that scales from remote office to chassis-based solutions with integrated management and reporting. Fortinet solutions have won multiple awards around the world and are the only security products that are certified in six programs by ICSA Labs: (Firewall, Antivirus, IPSec, SSL, Network IPS, and Anti-Spyware). Fortinet is privately held and based in Sunnyvale, California.