Executive Summary



This Alert is flagged as TOP 25 Common Weakness Enumeration from CWE/SANS. For more information, you can read this.
Summary
Title Silver Peak VX is vulnerable to cross-site request forgery and cross-site scripting
Informations
Name VU#867980 First vendor Publication 2014-07-28
Vendor VU-CERT Last vendor Modification 2014-07-28
Severity (Vendor) N/A Revision M

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:M/Au:N/C:P/I:P/A:P)
Cvss Base Score 6.8 Attack Range Network
Cvss Impact Score 6.4 Attack Complexity Medium
Cvss Expoit Score 8.6 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

Vulnerability Note VU#867980

Silver Peak VX is vulnerable to cross-site request forgery and cross-site scripting

Original Release date: 28 Jul 2014 | Last revised: 28 Jul 2014

Overview

Silver Peak VX version 6.2.2.0_47968 is vulnerable to cross-site request forgery and cross-site scripting.

Description

CWE-352: Cross-Site Request Forgery (CSRF) - CVE-2014-2974

Silver Peak VX version 6.2.2.0_47968 contains a cross-site request forgery vulnerability in /php/user_account.php that allows an unauthenticated user to create a new administrator account.

CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') - CVE-2014-2975
Silver Peak VX version 6.2.2.0_47968 also contains a reflected cross-site scripting vulnerability in /php/user_account.php that can allow an attacker to inject arbitrary HTML content (including scripts) via the vulnerable query string parameter user_id .

The CVSS score below applies to the CVE-2013-2975 vulnerability.

Impact

An attacker can conduct a cross-site scripting or cross-site request forgery attack, which could be used for privilege escalation or to inject arbitrary HTML content (including script) into a web page presented to the user.

Solution

Apply an Update
Silver Peak has provided an update to fix CVE-2014-2975 in Silver Peak VX 6.2.4. CVE-2014-2974 is expected to be addressed "in the next maintenance release" according to the vendor.

Vendor Information (Learn More)

VendorStatusDate NotifiedDate Updated
Silver PeakAffected16 Apr 201423 Jul 2014
If you are a vendor and your product is affected, let us know.

CVSS Metrics (Learn More)

GroupScoreVector
Base5.0AV:N/AC:L/Au:N/C:N/I:P/A:N
Temporal4.0E:POC/RL:TF/RC:C
Environmental0.0CDP:N/TD:N/CR:ND/IR:ND/AR:ND

References

  • http://www.silver-peak.com/products-solutions/wan-optimization/vx-software
  • http://cwe.mitre.org/data/definitions/79.html
  • http://cwe.mitre.org/data/definitions/352.html

Credit

Thanks to William Costa for reporting this vulnerability.

This document was written by Chris King.

Other Information

  • CVE IDs:CVE-2014-2974CVE-2014-2975
  • Date Public:28 Jul 2014
  • Date First Published:28 Jul 2014
  • Date Last Updated:28 Jul 2014
  • Document Revision:17

Feedback

If you have feedback, comments, or additional information about this vulnerability, please send us email.

Original Source

Url : http://www.kb.cert.org/vuls/id/867980

CWE : Common Weakness Enumeration

% Id Name
50 % CWE-352 Cross-Site Request Forgery (CSRF) (CWE/SANS Top 25)
50 % CWE-79 Failure to Preserve Web Page Structure ('Cross-site Scripting') (CWE/SANS Top 25)

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 2

Nessus® Vulnerability Scanner

Date Description
2014-09-25 Name : The remote web server contains a web application that is affected by a cross-...
File : silver_peak_vx_6_2_4.nasl - Type : ACT_GATHER_INFO

Alert History

If you want to see full details history, please login or register.
0
1
2
3
Date Informations
2014-09-26 13:27:34
  • Multiple Updates
2014-07-29 21:28:54
  • Multiple Updates
2014-07-28 21:28:41
  • Multiple Updates
2014-07-28 17:23:23
  • First insertion