UBBCentral UBB.Threads Local File Include Vulnerability
BID:14055
Info
UBBCentral UBB.Threads Local File Include Vulnerability
| Bugtraq ID: | 14055 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 24 2005 12:00AM |
| Updated: | Jun 24 2005 12:00AM |
| Credit: | James Bercegay of the GulfTech Security Research Team is credited with the discovery of this vulnerability. |
| Vulnerable: |
UBBCentral UBB.threads 6.5.1 .1 UBBCentral UBB.threads 6.5.1 UBBCentral UBB.threads 6.5 UBBCentral UBB.threads 6.2.3 UBBCentral UBB.threads 6.0 |
| Not Vulnerable: |
UBBCentral UBB.threads 6.5.2 Beta2 |
Discussion
UBBCentral UBB.Threads Local File Include Vulnerability
UBB.Threads is prone to a local file include vulnerability.
The problem presents itself when an attacker passes the location of a potentially malicious local script through a parameter of the cookie.
An attacker may leverage this issue to execute arbitrary server-side script code that resides on an affected computer with the privileges of the Web server process. This may potentially facilitate unauthorized access.
It should be noted that this issue may also be leveraged to read arbitrary files on an affected computer with the privileges of the Web server.
UBB.Threads is prone to a local file include vulnerability.
The problem presents itself when an attacker passes the location of a potentially malicious local script through a parameter of the cookie.
An attacker may leverage this issue to execute arbitrary server-side script code that resides on an affected computer with the privileges of the Web server process. This may potentially facilitate unauthorized access.
It should be noted that this issue may also be leveraged to read arbitrary files on an affected computer with the privileges of the Web server.
Exploit / POC
UBBCentral UBB.Threads Local File Include Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
UBBCentral UBB.Threads Local File Include Vulnerability
Solution:
The vendor has addressed this issue in UBB.Threads version 6.5.2beta2:
UBBCentral UBB.threads 6.0
UBBCentral UBB.threads 6.2.3
UBBCentral UBB.threads 6.5
UBBCentral UBB.threads 6.5.1
UBBCentral UBB.threads 6.5.1 .1
Solution:
The vendor has addressed this issue in UBB.Threads version 6.5.2beta2:
UBBCentral UBB.threads 6.0
-
UBBCentral UBB.Threads 6.5.2beta2
http://www.infopop.com/members/members.php
UBBCentral UBB.threads 6.2.3
-
UBBCentral UBB.Threads 6.5.2beta2
http://www.infopop.com/members/members.php
UBBCentral UBB.threads 6.5
-
UBBCentral UBB.Threads 6.5.2beta2
http://www.infopop.com/members/members.php
UBBCentral UBB.threads 6.5.1
-
UBBCentral UBB.Threads 6.5.2beta2
http://www.infopop.com/members/members.php
UBBCentral UBB.threads 6.5.1 .1
-
UBBCentral UBB.Threads 6.5.2beta2
http://www.infopop.com/members/members.php
References
UBBCentral UBB.Threads Local File Include Vulnerability
References:
References:
- Infopop UBB Threads Multiple Vulnerabilities (Gulftech Research)
- UBB.Threads 6.5.2b2 Released to the Member Area (UBBCentral)
- UBB.threads Homepage (UBBCentral)