YaPiG Remote Server-Side Script Execution Vulnerability
BID:10891
Info
YaPiG Remote Server-Side Script Execution Vulnerability
| Bugtraq ID: | 10891 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 08 2004 12:00AM |
| Updated: | Aug 08 2004 12:00AM |
| Credit: | aCiDBiTS <[email protected]> disclosed this vulnerability. |
| Vulnerable: |
YaPiG YaPig 0.92 b |
| Not Vulnerable: | |
Discussion
YaPiG Remote Server-Side Script Execution Vulnerability
A vulnerability is reported to exist in YaPiG that may allow a remote attacker to execute malicious scripts on a vulnerable system. This issue exists due to a lack if sanitization of user-supplied data.
It is reported that an attacker may be able to upload content that will be saved on the server with a '.php' extension. When this file is requested by the attacker, the contents of the file will be parsed and executed by the PHP engine, rather than being sent.
Successful exploitation of this issue may allow an attacker to execute malicious script code on a vulnerable server.
Version 0.92b is reported vulnerable to this issue. Other versions may also be affected.
A vulnerability is reported to exist in YaPiG that may allow a remote attacker to execute malicious scripts on a vulnerable system. This issue exists due to a lack if sanitization of user-supplied data.
It is reported that an attacker may be able to upload content that will be saved on the server with a '.php' extension. When this file is requested by the attacker, the contents of the file will be parsed and executed by the PHP engine, rather than being sent.
Successful exploitation of this issue may allow an attacker to execute malicious script code on a vulnerable server.
Version 0.92b is reported vulnerable to this issue. Other versions may also be affected.
Exploit / POC
YaPiG Remote Server-Side Script Execution Vulnerability
A proof-of-concept exploit has been provided.
A proof-of-concept exploit has been provided.
Solution / Fix
YaPiG Remote Server-Side Script Execution Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.