Vulnerability Name:

CVE-2005-2771 (CCN-22131)

Assigned:2005-09-01
Published:2005-09-01
Updated:2008-09-05
Summary:WRQ Reflection for Secure IT Windows Server 6.0 (formerly known as F-Secure SSH server) processes access and deny lists in a case-sensitive manner, when previous versions were case-insensitive, which might allow remote attackers to bypass intended restrictions and login to accounts that should be denied.
CVSS v3 Severity:10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
10.0 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-Other
Vulnerability Consequences:Bypass Security
References:Source: MITRE
Type: CNA
CVE-2005-2771

Source: CCN
Type: SA16649
WRQ Reflection for Secure IT Windows Server Multiple Security Issues

Source: SECUNIA
Type: Patch
16649

Source: CCN
Type: SECTRACK ID: 1014835
Reflection for Secure IT Multiple Bugs May Let Local Users Obtain Host Keys or Let Remote Users Access Certain Accounts or Systems

Source: SECTRACK
Type: UNKNOWN
1014835

Source: CCN
Type: WRQ Support Technical Note 1867
Reflection for Secure IT Windows Server Security Vulnerability Update and Workaround

Source: CONFIRM
Type: UNKNOWN
http://support.wrq.com/techdocs/1910.html

Source: CCN
Type: US-CERT VU#758054
Reflection for Secure IT Windows Server 6.0 changed case sensitivity of allow and deny lists

Source: CERT-VN
Type: Third Party Advisory, US Government Resource
VU#758054

Source: CCN
Type: OSVDB ID: 19267
WRQ Reflection for Secure IT Windows Server Mixed Case Ruleset Bypass

Source: XF
Type: UNKNOWN
reflection-secure-it-security-bypass(22131)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:f-secure:f-secure_ssh_server:5.1:*:*:*:*:*:*:*
  • OR cpe:/a:f-secure:f-secure_ssh_server:5.2:*:*:*:*:*:*:*
  • OR cpe:/a:f-secure:f-secure_ssh_server:5.3:*:*:*:*:*:*:*
  • OR cpe:/a:wrq:wrq_reflection_for_secure_it_windows_server:6.0:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:attachmate:reflection_for_secure_it:6.0:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    f-secure f-secure ssh server 5.1
    f-secure f-secure ssh server 5.2
    f-secure f-secure ssh server 5.3
    wrq wrq reflection for secure it windows server 6.0
    attachmate reflection for secure it 6.0