PostNuke Install Script Administrator Password Disclosure Vulnerability
BID:10793
Info
PostNuke Install Script Administrator Password Disclosure Vulnerability
| Bugtraq ID: | 10793 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 24 2004 12:00AM |
| Updated: | Jul 24 2004 12:00AM |
| Credit: | Discovery is credited to hellsink hellsink <[email protected]>. |
| Vulnerable: |
PostNuke Development Team PostNuke 0.75 PostNuke Development Team PostNuke 0.74 PostNuke Development Team PostNuke 0.73 |
| Not Vulnerable: | |
Discussion
PostNuke Install Script Administrator Password Disclosure Vulnerability
It is reported that PostNuke may disclose administrator authentication credentials to remote attackers. This issue presents itself because the application fails to remove the install script 'install.php' after installation. This can allow an attacker to gain unauthorized access to the content management system. The attacker may then carry out further attacks against other users or the computer running the vulnerable application.
It is reported that PostNuke may disclose administrator authentication credentials to remote attackers. This issue presents itself because the application fails to remove the install script 'install.php' after installation. This can allow an attacker to gain unauthorized access to the content management system. The attacker may then carry out further attacks against other users or the computer running the vulnerable application.
Exploit / POC
PostNuke Install Script Administrator Password Disclosure Vulnerability
No exploit is required.
The following proof of concept is available:
http://www.example.com/install.php
No exploit is required.
The following proof of concept is available:
http://www.example.com/install.php
Solution / Fix
PostNuke Install Script Administrator Password Disclosure Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
PostNuke Install Script Administrator Password Disclosure Vulnerability
References:
References:
- PostNuke 'install.php' Discloses Administrator Password to Remote Users (SecurityTracker)
- PostNuke Homepage (PostNuke Development Team)