{"id":17443,"date":"2020-01-08T22:16:25","date_gmt":"2020-01-09T03:16:25","guid":{"rendered":"https:\/\/www.elteni.com\/?p=17443"},"modified":"2020-01-08T22:16:25","modified_gmt":"2020-01-09T03:16:25","slug":"information-leakage-and-improper-error-handling-vulnerability-found-in-axcient-efolder-synced-tool","status":"publish","type":"post","link":"https:\/\/www.elteni.com\/insights\/?p=17443","title":{"rendered":"Information Leakage and Improper Error Handling vulnerability found in Axcient \/ eFolder Synced Tool"},"content":{"rendered":"<p>This vulnerability was responsibly disclosed to Axcient\/Anchor on November 4, 2019.<\/p>\n<p>Affected versions: &gt; 2.7.1.1498<\/p>\n<p>During a penetration test we came across a file sharing application called SynedTool. When performing some of the more simpler tests we identified that this application is vulnerable to an Information Leakage and Improper Error Handling vulnerability.<\/p>\n<p>The application allows for enumeration of legitimate user accounts. This was identified by examining the log in errors. When what appeared to be an invalid username was tried, only the error message \u201cYour username or password is incorrect\u201d was displayed. If what appeared to be a valid user account was tried, the error messages \u201cInvalid Credentials\u201d and \u201cYour username or password is incorrect\u201d would be displayed. You can see examples of this in the screenshots below.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-17444\" src=\"https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtool1.png\" alt=\"\" width=\"1023\" height=\"486\" srcset=\"https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtool1.png 1023w, https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtool1-300x143.png 300w, https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtool1-768x365.png 768w\" sizes=\"auto, (max-width: 1023px) 100vw, 1023px\" \/><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-17445\" src=\"https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtool2.png\" alt=\"\" width=\"1023\" height=\"486\" srcset=\"https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtool2.png 1023w, https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtool2-300x143.png 300w, https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtool2-768x365.png 768w\" sizes=\"auto, (max-width: 1023px) 100vw, 1023px\" \/><\/p>\n<p>The application also allows for unlimited authentication attempts, so one can use a combination of user lists to identify all valid users and wordlists to potentially identify accounts with brute force attacks. We leveraged a python script to enumerate the user accounts for our particular client but avoided performing any brute force attempts since this wasn&#8217;t in scope.<\/p>\n<p>During the test we identified that version 2.7.1.1498 was affected by this vulnerability. It also appears that all prior versions are also affected. Like any responsible penetration tester would do we notified Axcient of our finding and their response was:<\/p>\n<blockquote><p>Thanks for bringing this to our attention, we actually do have a fixed ready for this coming in a future build of the server, but I&#8217;ve gone ahead and linked this ticket up to the task with our development team.\u00a0 For the time being I&#8217;ll be escalating the ticket up to one of my senior colleagues to hold onto, we&#8217;ll reach back out once the fix has been released.<\/p><\/blockquote>\n<p>Since notifying them there appears to have been a new release but no mention of a fix. Available here: <a href=\"https:\/\/support.efolder.net\/hc\/en-us\/articles\/360038991953-Anchor-Web-Portal-2-7-2-Release-Notes\">https:\/\/support.efolder.net\/hc\/en-us\/articles\/360038991953-Anchor-Web-Portal-2-7-2-Release-Notes<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>This vulnerability was responsibly disclosed to Axcient\/Anchor on November 4, 2019. Affected versions: &gt; 2.7.1.1498 During a penetration test we came across a file sharing application called SynedTool. [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":17447,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19,83],"tags":[77,78,79,80,81,82],"class_list":["post-17443","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-vulnerability","category-vulnerability-disclosure","tag-anchor","tag-axcient","tag-efolder","tag-information-leakage","tag-syncedtool","tag-vulnerability"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Information Leakage and Improper Error Handling vulnerability found in Axcient \/ eFolder Synced Tool - Insights<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.elteni.com\/insights\/?p=17443\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Information Leakage and Improper Error Handling vulnerability found in Axcient \/ eFolder Synced Tool - Insights\" \/>\n<meta property=\"og:description\" content=\"This vulnerability was responsibly disclosed to Axcient\/Anchor on November 4, 2019. Affected versions: &gt; 2.7.1.1498 During a penetration test we came across a file sharing application called SynedTool. [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.elteni.com\/insights\/?p=17443\" \/>\n<meta property=\"og:site_name\" content=\"Insights\" \/>\n<meta property=\"article:published_time\" content=\"2020-01-09T03:16:25+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtoolerror.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1023\" \/>\n\t<meta property=\"og:image:height\" content=\"486\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Elteni\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Elteni\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443\"},\"author\":{\"name\":\"Elteni\",\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/#\\\/schema\\\/person\\\/e415dfcf12d1dc9ad6eca68055c5e075\"},\"headline\":\"Information Leakage and Improper Error Handling vulnerability found in Axcient \\\/ eFolder Synced Tool\",\"datePublished\":\"2020-01-09T03:16:25+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443\"},\"wordCount\":339,\"image\":{\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/wp-content\\\/uploads\\\/2020\\\/01\\\/syncedtoolerror.png\",\"keywords\":[\"Anchor\",\"Axcient\",\"eFolder\",\"Information Leakage\",\"Syncedtool\",\"Vulnerability\"],\"articleSection\":[\"Vulnerability\",\"Vulnerability Disclosure\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443\",\"url\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443\",\"name\":\"Information Leakage and Improper Error Handling vulnerability found in Axcient \\\/ eFolder Synced Tool - Insights\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/wp-content\\\/uploads\\\/2020\\\/01\\\/syncedtoolerror.png\",\"datePublished\":\"2020-01-09T03:16:25+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/#\\\/schema\\\/person\\\/e415dfcf12d1dc9ad6eca68055c5e075\"},\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443#primaryimage\",\"url\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/wp-content\\\/uploads\\\/2020\\\/01\\\/syncedtoolerror.png\",\"contentUrl\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/wp-content\\\/uploads\\\/2020\\\/01\\\/syncedtoolerror.png\",\"width\":1023,\"height\":486},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?p=17443#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.elteni.com\\\/insights\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Information Leakage and Improper Error Handling vulnerability found in Axcient \\\/ eFolder Synced Tool\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/#website\",\"url\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/\",\"name\":\"Insights\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/#\\\/schema\\\/person\\\/e415dfcf12d1dc9ad6eca68055c5e075\",\"name\":\"Elteni\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/?s=96&d=mm&r=g\",\"caption\":\"Elteni\"},\"url\":\"https:\\\/\\\/www.elteni.com\\\/insights\\\/?author=2\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Information Leakage and Improper Error Handling vulnerability found in Axcient \/ eFolder Synced Tool - Insights","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.elteni.com\/insights\/?p=17443","og_locale":"en_US","og_type":"article","og_title":"Information Leakage and Improper Error Handling vulnerability found in Axcient \/ eFolder Synced Tool - Insights","og_description":"This vulnerability was responsibly disclosed to Axcient\/Anchor on November 4, 2019. Affected versions: &gt; 2.7.1.1498 During a penetration test we came across a file sharing application called SynedTool. [&hellip;]","og_url":"https:\/\/www.elteni.com\/insights\/?p=17443","og_site_name":"Insights","article_published_time":"2020-01-09T03:16:25+00:00","og_image":[{"width":1023,"height":486,"url":"https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtoolerror.png","type":"image\/png"}],"author":"Elteni","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Elteni","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.elteni.com\/insights\/?p=17443#article","isPartOf":{"@id":"https:\/\/www.elteni.com\/insights\/?p=17443"},"author":{"name":"Elteni","@id":"https:\/\/www.elteni.com\/insights\/#\/schema\/person\/e415dfcf12d1dc9ad6eca68055c5e075"},"headline":"Information Leakage and Improper Error Handling vulnerability found in Axcient \/ eFolder Synced Tool","datePublished":"2020-01-09T03:16:25+00:00","mainEntityOfPage":{"@id":"https:\/\/www.elteni.com\/insights\/?p=17443"},"wordCount":339,"image":{"@id":"https:\/\/www.elteni.com\/insights\/?p=17443#primaryimage"},"thumbnailUrl":"https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtoolerror.png","keywords":["Anchor","Axcient","eFolder","Information Leakage","Syncedtool","Vulnerability"],"articleSection":["Vulnerability","Vulnerability Disclosure"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.elteni.com\/insights\/?p=17443","url":"https:\/\/www.elteni.com\/insights\/?p=17443","name":"Information Leakage and Improper Error Handling vulnerability found in Axcient \/ eFolder Synced Tool - Insights","isPartOf":{"@id":"https:\/\/www.elteni.com\/insights\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.elteni.com\/insights\/?p=17443#primaryimage"},"image":{"@id":"https:\/\/www.elteni.com\/insights\/?p=17443#primaryimage"},"thumbnailUrl":"https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtoolerror.png","datePublished":"2020-01-09T03:16:25+00:00","author":{"@id":"https:\/\/www.elteni.com\/insights\/#\/schema\/person\/e415dfcf12d1dc9ad6eca68055c5e075"},"breadcrumb":{"@id":"https:\/\/www.elteni.com\/insights\/?p=17443#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.elteni.com\/insights\/?p=17443"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.elteni.com\/insights\/?p=17443#primaryimage","url":"https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtoolerror.png","contentUrl":"https:\/\/www.elteni.com\/insights\/wp-content\/uploads\/2020\/01\/syncedtoolerror.png","width":1023,"height":486},{"@type":"BreadcrumbList","@id":"https:\/\/www.elteni.com\/insights\/?p=17443#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.elteni.com\/insights"},{"@type":"ListItem","position":2,"name":"Information Leakage and Improper Error Handling vulnerability found in Axcient \/ eFolder Synced Tool"}]},{"@type":"WebSite","@id":"https:\/\/www.elteni.com\/insights\/#website","url":"https:\/\/www.elteni.com\/insights\/","name":"Insights","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.elteni.com\/insights\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.elteni.com\/insights\/#\/schema\/person\/e415dfcf12d1dc9ad6eca68055c5e075","name":"Elteni","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/?s=96&d=mm&r=g","caption":"Elteni"},"url":"https:\/\/www.elteni.com\/insights\/?author=2"}]}},"_links":{"self":[{"href":"https:\/\/www.elteni.com\/insights\/index.php?rest_route=\/wp\/v2\/posts\/17443","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.elteni.com\/insights\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.elteni.com\/insights\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.elteni.com\/insights\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.elteni.com\/insights\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=17443"}],"version-history":[{"count":0,"href":"https:\/\/www.elteni.com\/insights\/index.php?rest_route=\/wp\/v2\/posts\/17443\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.elteni.com\/insights\/index.php?rest_route=\/wp\/v2\/media\/17447"}],"wp:attachment":[{"href":"https:\/\/www.elteni.com\/insights\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=17443"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.elteni.com\/insights\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=17443"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.elteni.com\/insights\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=17443"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}