CRLF injection in SNS webadmin

Advisory ID CVE Number Date discovered Severity Advisory revision
STORM-2019-012 07/11/2019 high v2

Vulnerability details

On an SNS firewall , some pre-auth url are vulnerable to CRLF injection which can lead to password or cookie stealing.

Impacted products

ProductsSeverityDetail
Stormshield Network Security high SNS is impacted
Netasq high Netasq is impacted

Revisions

Version Date Description
v1 Initial release
v2 30/12/2019 add SNS 2.x fix versions

 



Stormshield Network Security

CVSS v2 Overall Score: 8.7      

Analysis

Impacted version

On an SNS firewall , some pre-auth url are vulnerable to CRLF injection which can lead to password or cookie stealing.

  • SNS 3.x
  • SNS 2.x

Workaround solution

Solution

There is no workaround solution.

The 2.7.5, 2.15, 3.7.6 and 3.9.1 updates will fix this vulnerability.



Access vector Access complexity Authentication Confidentiality impact Integrity impact Availability impact
Network Low None Complete Complete Complete
CVSS Base score: 10 CVSS Vector: (AV:N/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Remediation Level Report Confidence
High Official fix Confirmed
CVSS Temporal score: 8.7 CVSS Vector: (AV:N/AC:L/Au:N/C:C/I:C/A:C/E:H/RL:OF/RC:C)
Collateral Damage Potential Target Distribution
None High [76-100%]
CVSS Environmental score: 8.7 CVSS Vector: (AV:N/AC:L/Au:N/C:C/I:C/A:C/E:H/RL:OF/RC:C/CDP:N/TD:H/CR:ND/IR:ND/AR:ND)


Netasq

CVSS v2 Overall Score: 8.7      

Analysis

Impacted version

On an SNS firewall , some pre-auth url are vulnerable to CRLF injection which can lead to password or cookie stealing.

  • Netasq 9.1.1

Workaround solution

Solution

There is no workaround solution.

The 9.1.11 update will fix this vulnerability.



Access vector Access complexity Authentication Confidentiality impact Integrity impact Availability impact
Network Low None Complete Complete Complete
CVSS Base score: 10 CVSS Vector: (AV:N/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Remediation Level Report Confidence
High Official fix Confirmed
CVSS Temporal score: 8.7 CVSS Vector: (AV:N/AC:L/Au:N/C:C/I:C/A:C/E:H/RL:OF/RC:C)
Collateral Damage Potential Target Distribution
None High [76-100%]
CVSS Environmental score: 8.7 CVSS Vector: (AV:N/AC:L/Au:N/C:C/I:C/A:C/E:H/RL:OF/RC:C/CDP:N/TD:H/CR:ND/IR:ND/AR:ND)