zbeng Posted September 12, 2006 Report Posted September 12, 2006 title: vCAP calendar server Multiple vulnerabilityAuthor: securma massine <securma@morx.org>MorX Security Research Teamhttp://www.morx.orgProduct info : vCAP (www.pscs.co.uk)is a network calendar server for Windows. vCAP allows user to create calendars which can be viewed and modified by people on network using a web browser. Original Advisory/PoC : http://www.morx.org/vcap.txtSeverity: Medium/High - user can remotely attack the serverVulnerability Description:v1: denial of service attack with a specific requestv2: directory traversal , any file on the system can be downloaded ,especially vCAp's passwords (vCAP.db)Affected Software(s): vCAP calendar server 1.9.0 Beta and priorAffected platform(s): WindowsExploit/Proof of Concept:v1- http://127.0.0.1:6100/StoresAndCalendarsLi...sion=%d%d%d%d%dv2- http://127.0.0.1:6100/../Data/vCAP.dbSolution : ??History:16/08/2006 initial vendor contact17/08/2006 sending vulnerability details31/08/2006 vulnerability confirmedDisclaimer:this entire document is for eductional, testing and demonstrating purpose only.The author do not have any responsibility for any malicious use of this advisory or proof of concept code. Quote