header-logo
Suggest Exploit
vendor:
BorderManager
by:
SecurityFocus
7.5
CVSS
HIGH
Memory Allocation Problem
119
CWE
Product Name: BorderManager
Affected Version From: BorderManager 3.0
Affected Version To: BorderManager 3.5
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2001

CS Audit Trail Proxy Vulnerability

The CS Audit Trail Proxy feature installed by default with BorederManager 3.0 and 3.5 opens a listening port at port 2000, on both the internal and external interfaces. If a connection is made to this port and the 'enter' key hit a few times, the server will start experincing memory allocation problems. Eventually the server will have to be rebooted to restore normal functionality.

Mitigation:

Disable the CS Audit Trail Proxy feature or restrict access to port 2000.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/976/info

A feature called the CS Audit Trail Proxy is installed by default with BorederManager 3.0 and 3.5 .This feature opens a listening port at port 2000, on both the internal and external interfaces. If a connection is made to this port and the 'enter' key hit a few times, the server will start experincing memory allocation problems. Eventually the server will have to be rebooted to restore normal functionality.

The CS Audit Trail Proxy is handled by CSATPRX.NLM

telnet target:2000
<enter>
<enter>