Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  PHP, ASP, CGI web applications security vulnerabilities

  phpBB datenbank mod has XSS/SQL Injection in the id variable

  Http Response Splitting Vulnerability In PHP-NUKE 7.6 and below

  Mafia Blog

  Vulnerabilities in sphpblog

From:kreon <kre0n_(at)_mail.ru>
Date:13.04.2005
Subject:DoKuWiki file-upload vulnerabilities

ADZ Security Team
===================
Info

Program: DoKuWiki
Version: 2005-02-18
Module:  media.php
Bug type: File Upload bug
Vendor site: http://wiki.splitbrain.org/
Vendor Informed: Yes
===================
Bug Info

Remote user with file-upload privileges can upload anyone file with any
extention/content, like a <?php system($_GET['cmd']); ?> in php-script

If uploaded file cases allowed extention, like a cmd.gif.php, system
allows to upload it
I'd tested it on php-4.3.7.

===================
Contact

ADZ Security Team
URL: http://adz.void.ru/
IRC: #adz @ QuakeNet
MAIL: kre0n@mail.ru, adz.kreon@gmail.com (for non-russian users)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru