15
Cart32 ChangeAdminPassword
HTTP
2003/11/13
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
2004/11/14
2.0
Corrected the plugin structure and added the accuracy values in 1.4. Improved the pattern matching and introduced the plugin changelog in 2.0
tcp
80
open|send GET /c32web.exe/ChangeAdminPassword HTTP/1.0\n\n|sleep|close|pattern_exists HTTP/#.# 200 *
97
This plugin was written with the ATK Attack Editor.
http://www.cerberus-infosec.co.uk/advcart32.html
Cart32 e-commerce shopping cart
Other e-commerce shopping carts
Configuration
If the Cart32 e-commerce shopping cart is installed, there may be a backdoor available and every user could change the admin password.
Use another shopping cart software.
1 day
Yes
http://www.securityfocus.com/bid/1153/exploit/
Yes
Yes
High
6
6
8
7
High
Nessus is also able to do the same check.
CAN-2000-0429
1153
10389
Hacking Exposed: Network Security Secrets & Solutions, Stuart McClure, Joel Scambray and George Kurtz, February 25, 2003, 4th Edition, McGraw-Hill Osborne Media, ISBN 0072227427
http://www.computec.ch