MyPhPim Addresses.PHP3 Arbitrary File Upload Vulnerability
BID:16208
Info
MyPhPim Addresses.PHP3 Arbitrary File Upload Vulnerability
| Bugtraq ID: | 16208 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 11 2006 12:00AM |
| Updated: | Jan 11 2006 12:00AM |
| Credit: | [email protected] is credited with the discovery of this vulnerability. |
| Vulnerable: |
Nortel Networks Contivity 2600 Secure IP Services Gateway 01.05 |
| Not Vulnerable: | |
Discussion
MyPhPim Addresses.PHP3 Arbitrary File Upload Vulnerability
MyPhPim is prone to an arbitrary file upload vulnerability.
An attacker can exploit this vulnerability to upload arbitrary code and execute it in the context of the Web server process. This may facilitate unauthorized access or privilege escalation; other attacks are also possible.
MyPhPim is prone to an arbitrary file upload vulnerability.
An attacker can exploit this vulnerability to upload arbitrary code and execute it in the context of the Web server process. This may facilitate unauthorized access or privilege escalation; other attacks are also possible.
Exploit / POC
MyPhPim Addresses.PHP3 Arbitrary File Upload Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
MyPhPim Addresses.PHP3 Arbitrary File Upload Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
MyPhPim Addresses.PHP3 Arbitrary File Upload Vulnerability
References:
References:
- MyPhPim Arbitrary File Upload (eVuln)
- MyPhPim Web Site (MyPhPim)
- MyPhPim Arbitrary File Upload ([email protected])