Vulnerability CVE-2010-0962


Published: 2010-03-10   Modified: 2012-02-13

Description:
The FTP proxy server in Apple AirPort Express, AirPort Extreme, and Time Capsule with firmware 7.5 does not restrict the IP address and port specified in a PORT command from a client, which allows remote attackers to leverage intranet FTP servers for arbitrary TCP forwarding via a crafted PORT command.

See advisories in our WLB2 database:
Topic
Author
Date
Med.
Apple Airport Wireless Products FTP Proxy Provides Security Bypass
Sabahattin Gucuk...
15.03.2010

Type:

CWE-264

(Permissions, Privileges, and Access Controls)

Vendor: Apple
Product: Airport express 
Version: 7.5;
Product: Time capsule 
Version: 7.5;
Product: Airport extreme 
Version: 7.5;

CVSS2 => (AV:N/AC:L/Au:N/C:N/I:P/A:N)

CVSS Base Score
Impact Subscore
Exploitability Subscore
5/10
2.9/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
None
Partial
None

 References:
http://seclists.org/fulldisclosure/2010/Mar/106
http://www.securityfocus.com/archive/1/509867/100/0/threaded
http://www.securityfocus.com/archive/1/509974/100/0/threaded
http://www.securityfocus.com/bid/38543
https://exchange.xforce.ibmcloud.com/vulnerabilities/56701

Related CVE
CVE-2018-4298
In macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, a permissions issue existed in Remote Management. This issue was addressed through improved permission validation.
CVE-2018-4278
In Safari before 11.1.2, iTunes before 12.8 for Windows, iOS before 11.4.1, tvOS before 11.4.1, iCloud for Windows before 7.6, sound fetched through audio elements may be exfiltrated cross-origin. This issue was addressed with improved audio taint tr...
CVE-2018-4277
In iOS before 11.4.1, watchOS before 4.3.2, tvOS before 11.4.1, Safari before 11.1.1, macOS High Sierra before 10.13.6, a spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation.
CVE-2018-4262
In Safari before 11.1.2, iTunes before 12.8 for Windows, iOS before 11.4.1, tvOS before 11.4.1, iCloud for Windows before 7.6, multiple memory corruption issues were addressed with improved memory handling.
CVE-2018-4258
In macOS High Sierra before 10.13.5, a buffer overflow was addressed with improved bounds checking.
CVE-2018-4257
In macOS High Sierra before 10.13.5, a buffer overflow was addressed with improved size validation.
CVE-2018-4256
In macOS High Sierra before 10.13.5, an out-of-bounds read was addressed with improved input validation.
CVE-2018-4255
In macOS High Sierra before 10.13.5, an out-of-bounds read was addressed with improved input validation.

Copyright 2019, cxsecurity.com

 

Back to Top