The admin console in Ignite Realtime Openfire 3.3.0 and earlier (formerly Wildfire) does not properly specify a filter mapping in web.xml, which allows remote attackers to gain privileges and execute arbitrary code by accessing functionality that is exposed through DWR, as demonstrated using the downloader.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://secunia.com/advisories/25427 | third party advisory vendor advisory |
http://www.igniterealtime.org/issues/browse/JM-1049 | patch vendor advisory |
http://www.osvdb.org/36713 | vdb entry |
http://blogs.reucon.com/srt/2007/05/11/openfire_3_3_1_fixes_critical_security_issue.html | |
http://www.securityfocus.com/bid/24205 | vdb entry patch |