Polipo < 0.9.9 Unspecified Traversal Arbitrary File Access

medium Nessus Plugin ID 19940

Synopsis

The remote web server may expose files outside the local web root.

Description

The remote host is running the Polipo caching web proxy. In addition to caching web pages, the software also functions as a web server for providing access to documentation, cached pages, etc.

The built-in web server in the installed version of Polipo fails to filter directory traversal sequences from requests. By exploiting this issue, an attacker may be able to retrieve files located outside the local web root, subject to the privileges of the userid under which Polipo runs.

Solution

Upgrade to Polipo 0.9.9 or later.

See Also

http://sourceforge.net/mailarchive/forum.php?thread_id=6845581&forum_id=36515

http://www.pps.jussieu.fr/~jch/software/polipo/CHANGES.text

Plugin Details

Severity: Medium

ID: 19940

File Name: polipo_dir_traversal.nasl

Version: 1.15

Type: remote

Family: Web Servers

Published: 10/6/2005

Updated: 7/25/2018

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 2.7

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Information

Exploit Ease: No known exploits are available

Vulnerability Publication Date: 9/23/2005

Reference Information

CVE: CVE-2005-3163

BID: 14970