The web console in CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 allows remote attackers to redirect users to arbitrary web sites via a crafted HTTP URL on port 6689.
The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.
Link | Tags |
---|---|
http://securityreason.com/securityalert/3219 | third party advisory |
http://www.securityfocus.com/archive/1/482021/100/0/threaded | mailing list |
http://www.securityfocus.com/bid/26013 | vdb entry |
http://www.eleytt.com/advisories/eleytt_ETRUSTITM2.pdf | vendor advisory |
http://osvdb.org/43482 | vdb entry |