IDA Pro Remote Debugger Server Authentication Bypass

medium Nessus Network Monitor Plugin ID 3955

Synopsis

The remote host is vulnerable to a flaw that allows for the bypassing of authentication.

Description

The remote host is running DataRescue IDA Pro, a commercial disassembler. This version of IDA Pro is vulnerable to a flaw in the way that it handles remote data passed to the processor_request() function, an authentication function. An attacker exploiting this flaw can bypass authentication and execute commands anonymously. Successful exploitation gives the attacker the ability to execute arbitrary commands on the remote system.

Solution

Upgrade or patch according to vendor recommendations.

See Also

http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=492

Plugin Details

Severity: Medium

ID: 3955

Family: Web Clients

Published: 3/24/2007

Updated: 3/6/2019

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: Medium

Base Score: 5.8

Temporal Score: 4.3

Vector: CVSS2#AV:A/AC:L/Au:N/C:P/I:P/A:P

CVSS v3

Risk Factor: Medium

Base Score: 6.3

Temporal Score: 5.5

Vector: CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:datarescue:ida_pro

Reference Information

CVE: CVE-2007-1666

BID: 23114