Quick & Dirty PHPSource Printer Directory Traversal Vulnerability
BID:14147
Info
Quick & Dirty PHPSource Printer Directory Traversal Vulnerability
| Bugtraq ID: | 14147 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 05 2005 12:00AM |
| Updated: | Jul 05 2005 12:00AM |
| Credit: | Seth Alan Woolley is credited with the discovery of this vulnerability. |
| Vulnerable: |
Quick & Dirty PHPSource Printer Quick & Dirty PHPSource Printer 1.1 Quick & Dirty PHPSource Printer Quick & Dirty PHPSource Printer 1.0 |
| Not Vulnerable: |
Quick & Dirty PHPSource Printer Quick & Dirty PHPSource Printer 1.1.1 |
Discussion
Quick & Dirty PHPSource Printer Directory Traversal Vulnerability
Quick & Dirty PHPSource Printer is affected by a directory traversal vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
A remote unauthorized user can disclose the contents of arbitrary local files through the use of directory traversal strings '../'. Exploitation of this vulnerability could lead to a loss of confidentiality.
The vendor has addressed this issue in Quick & Dirty PHPSource Printer version 1.1.1; earlier versions are reported vulnerable.
Quick & Dirty PHPSource Printer is affected by a directory traversal vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
A remote unauthorized user can disclose the contents of arbitrary local files through the use of directory traversal strings '../'. Exploitation of this vulnerability could lead to a loss of confidentiality.
The vendor has addressed this issue in Quick & Dirty PHPSource Printer version 1.1.1; earlier versions are reported vulnerable.
Exploit / POC
Quick & Dirty PHPSource Printer Directory Traversal Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
Quick & Dirty PHPSource Printer Directory Traversal Vulnerability
Solution:
The vendor has addressed this issue in Quick & Dirty PHPSource Printer version 1.1.1:
Quick & Dirty PHPSource Printer Quick & Dirty PHPSource Printer 1.0
Quick & Dirty PHPSource Printer Quick & Dirty PHPSource Printer 1.1
Solution:
The vendor has addressed this issue in Quick & Dirty PHPSource Printer version 1.1.1:
Quick & Dirty PHPSource Printer Quick & Dirty PHPSource Printer 1.0
-
Quick & Dirty PHPSource Printer sourceprt.zip
http://guff.szub.net/wp-content/sourceprt.zip
Quick & Dirty PHPSource Printer Quick & Dirty PHPSource Printer 1.1
-
Quick & Dirty PHPSource Printer sourceprt.zip
http://guff.szub.net/wp-content/sourceprt.zip
References
Quick & Dirty PHPSource Printer Directory Traversal Vulnerability
References:
References:
- Quick & Dirty PHPSource Printer Homepage (Quick & Dirty PHPSource Printer)