toendaCMS Remote File Upload Vulnerability
BID:15351
Info
toendaCMS Remote File Upload Vulnerability
| Bugtraq ID: | 15351 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 07 2005 12:00AM |
| Updated: | Nov 07 2005 12:00AM |
| Credit: | Bernhard Mueller is credited with the discovery of this vulnerability. |
| Vulnerable: |
toendaCMS toendaCMS 0.6.1 |
| Not Vulnerable: |
toendaCMS toendaCMS 0.6.2 |
Discussion
toendaCMS Remote File Upload Vulnerability
toendaCMS is prone to an arbitrary file upload vulnerability.
An attacker can exploit this vulnerability to upload arbitrary code and execute it in the context of the Web server process. This may facilitate unauthorized access or privilege escalation; other attacks are also possible.
toendaCMS is prone to an arbitrary file upload vulnerability.
An attacker can exploit this vulnerability to upload arbitrary code and execute it in the context of the Web server process. This may facilitate unauthorized access or privilege escalation; other attacks are also possible.
Exploit / POC
toendaCMS Remote File Upload Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
toendaCMS Remote File Upload Vulnerability
Solution:
Version 0.6.2 is available to resolve this issue.
toendaCMS toendaCMS 0.6.1
Solution:
Version 0.6.2 is available to resolve this issue.
toendaCMS toendaCMS 0.6.1
-
toendaCMS toendaCMS_0.6.2_Stable.zip
http://www.toenda.com/de/data/files/Software/toendaCMS_Version_0.6.0_S table/toendaCMS_0.6.2_Stable.zip
References
toendaCMS Remote File Upload Vulnerability
References:
References:
- toendaCMS Web Site (toendaCMS)
- SEC Consult SA-20051107-0 :: toendaCMS multiple vulnerabilites (Bernhard Mueller
)