Executive Summary

Summary
Title ScrumWorks Pro privilege escalation vulnerability
Informations
Name VU#442595 First vendor Publication 2012-06-07
Vendor VU-CERT Last vendor Modification 2012-06-07
Severity (Vendor) N/A Revision M

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:S/C:P/I:P/A:P)
Cvss Base Score 6.5 Attack Range Network
Cvss Impact Score 6.4 Attack Complexity Low
Cvss Expoit Score 8 Authentication Requires single instance
Calculate full CVSS 2.0 Vectors scores

Detail

Vulnerability Note VU#442595

ScrumWorks Pro privilege escalation vulnerability

Original Release date: 07 Jun 2012 | Last revised: 07 Jun 2012

Overview

ScrumWorks Pro versions prior to ScrumWorks Pro 6.0 contain a privilege escalation vulnerability.

Description

ScrumWorks Pro versions prior to ScrumWorks Pro 6.0 contain a privilege escalation vulnerability where a malicious user can escalate the privileges of their ScrumWorks Pro account by recompiling the desktop client. When exploited, a malicious user could grant themselves ScrumWorks Pro privileges and access information to which they would otherwise be unable to access.

Impact

A malicious user can escalate the privileges of their ScrumWorks Pro account by recompiling the desktop client.

Solution

Update

CollabNet has stated: CollabNet has addressed this problem in release 6.0 such that a modified client is no longer effective in escalating permissions. Note for all versions of ScrumWorks Pro, this security issue does not compromise the security of the underlying host operating system and that a modified client does not negate the need for a valid username and password. Further, all activities by modified clients are still logged in the server.log file.

Vendor Information (Learn More)

VendorStatusDate NotifiedDate Updated
CollabNetAffected16 Feb 201231 May 2012
If you are a vendor and your product is affected, let us know.

CVSS Metrics (Learn More)

GroupScoreVector
Base5.6AV:N/AC:H/Au:S/C:C/I:P/A:N
Temporal4.4E:POC/RL:OF/RC:C
Environmental1.2CDP:L/TD:L/CR:ND/IR:ND/AR:ND

References

  • http://www.collab.net/products/scrumworks

Credit

Thanks to Wolfgang Holoch and David Elze of Daimler TSS GmbH for reporting this vulnerability.

This document was written by Michael Orlando.

Other Information

  • CVE IDs:CVE-2012-2603
  • Date Public:04 Jun 2012
  • Date First Published:07 Jun 2012
  • Date Last Updated:07 Jun 2012
  • Document Revision:11

Feedback

If you have feedback, comments, or additional information about this vulnerability, please send us email.


This product is provided subject to the Notification as indicated here: http://www.us-cert.gov/legal.html#notify

Original Source

Url : http://www.kb.cert.org/vuls/id/442595

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-264 Permissions, Privileges, and Access Controls

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 2