Rockliffe MailSite Express Arbitrary Script File Upload Vulnerability
BID:15230
Info
Rockliffe MailSite Express Arbitrary Script File Upload Vulnerability
| Bugtraq ID: | 15230 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 28 2005 12:00AM |
| Updated: | Oct 28 2005 12:00AM |
| Credit: | Paul Craig of Security-Assessment.com is credited with the discovery of this vulnerability. |
| Vulnerable: |
Rockliffe MailSite Express 6.1.20 |
| Not Vulnerable: |
Rockliffe MailSite Express 6.1.22 |
Discussion
Rockliffe MailSite Express Arbitrary Script File Upload Vulnerability
MailSite Express is prone to an arbitrary file upload vulnerability. The problem presents itself in the sanitization process of uploaded files.
An attacker can exploit this vulnerability to upload arbitrary files including malicious scripts and possibly execute the script on the affected server.
This can ultimately facilitate unauthorized access in the context of the Web server.
MailSite Express is prone to an arbitrary file upload vulnerability. The problem presents itself in the sanitization process of uploaded files.
An attacker can exploit this vulnerability to upload arbitrary files including malicious scripts and possibly execute the script on the affected server.
This can ultimately facilitate unauthorized access in the context of the Web server.
Exploit / POC
Rockliffe MailSite Express Arbitrary Script File Upload Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
Rockliffe MailSite Express Arbitrary Script File Upload Vulnerability
Solution:
The vendor has addressed this issue in MailSite Express version 6.1.22. Users are advised to contact the vendor for more information on obtaining updates.
Solution:
The vendor has addressed this issue in MailSite Express version 6.1.22. Users are advised to contact the vendor for more information on obtaining updates.
References
Rockliffe MailSite Express Arbitrary Script File Upload Vulnerability
References:
References:
- MailSite Express Homepage (Rockliffe)
- Multiple vulnerabilities within RockLiffe MailSite Express WebMail ("Paul Craig"
)