The Artima Developer Community
Sponsored Link

.NET Buzz Forum
Disk Space Exhaustion via Crystal Reports Vulnerability

0 replies.

Welcome Guest
  Sign In

Go back to the topic listing  Back to Topic List Click to reply to this topic  Reply to this Topic Click to search messages in this forum  Search Forum Click for a flat view of this topic  Flat View
Previous Topic   Next Topic
Threaded View: This topic has 0 replies on 1 page
Brendan Tompkins

Posts: 158
Nickname: brendant
Registered: Apr, 2005

Brendan Tompkins is .NET Developer and founder of CodeBetter.Com
Disk Space Exhaustion via Crystal Reports Vulnerability Posted: Apr 13, 2005 1:03 PM
Reply to this message Reply

This post originated from an RSS feed registered with .NET Buzz by Brendan Tompkins.
Original Post: Disk Space Exhaustion via Crystal Reports Vulnerability
Feed Title: Brendan Tompkins
Feed URL: /error.htm?aspxerrorpath=/blogs/brendan.tompkins/Rss.aspx
Feed Description: Blog First. Ask Questions Later.
Latest .NET Buzz Posts
Latest .NET Buzz Posts by Brendan Tompkins
Latest Posts From Brendan Tompkins

Today, I noticed some suspicious activity on one of our web servers here at work.   I quickly discovered that we were being scanned for vulnerabilities, from what looks like a security company!

Now, the way I see it, there's a few possible explanations to this.

  1. They’re doing a scan and they’re going to give us a sales pitch for security consulting. (they’d have to be idiots to do this, but who knows)
  2. They’ve been hacked, and this assault is coming from one of their servers. (they’d be idiot-filled, idiot-covered idiots if this were true)
  3. Or someone is spoofing their IP address. Anyone know of a way to determine if this is the case?

Well, anyhow, the scary thing about this is that one of the exploits they’re trying to use is this one:

Business Objects Crystal Reports vulnerability advisory

2. Disk Space Exhaustion

The Crystal Reports web delivery module relies on the image delivery module to both deliver the image file and cleanup the disk space it occupies. Hence, calling the report generation modules repeatedly without retrieving the related images (e.g. by using a Perl script) causes the report engine to take up more and more space in the image file folder. Not only that disk space is consumed quickly but response time for other users become substantially longer as the number of files in the folder increase. Eventually disk space will become exhausted.

Exploit

The exploit is carried out by simply sending a request URL to the crystal reports server looking like this:

http://foo,bar/crystalreportviewers/crystalimagehandler.aspx?dynamicimage=..\..\..\..\..\my documents\private\passwords.txt

I’d suggest that you patch your server, if you’re suffering from even a mild case of Crystal Reports, but then I read this:

So, my suggestion to you my friend is run - far far away from Crystal.

-Brendan

Read: Disk Space Exhaustion via Crystal Reports Vulnerability


Topic: Whoops Previous Topic   Next Topic Topic: Are there any good DNN E-Commerce solutions?

Sponsored Links



Google
  Web Artima.com   

Copyright © 1996-2019 Artima, Inc. All Rights Reserved. - Privacy Policy - Terms of Use