ToendaCMS Connector.PHP Arbitrary File Upload Vulnerability
BID:19072
CVE-2006-3362 |Info
ToendaCMS Connector.PHP Arbitrary File Upload Vulnerability
| Bugtraq ID: | 19072 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 19 2006 12:00AM |
| Updated: | Jul 20 2006 06:12PM |
| Credit: | rgod is credited with the discovery of this vulnerability. |
| Vulnerable: |
toendaCMS toendaCMS 1.0 toendaCMS toendaCMS 0.7 toendaCMS toendaCMS 0.6.2 toendaCMS toendaCMS 0.6.1 |
| Not Vulnerable: | |
Discussion
ToendaCMS Connector.PHP Arbitrary File Upload Vulnerability
ToendaCMS is prone to an arbitrary file-upload vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit this issue to upload and execute arbitrary shell commands on the vulnerable computer in the context of the running application.
ToendaCMS is prone to an arbitrary file-upload vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit this issue to upload and execute arbitrary shell commands on the vulnerable computer in the context of the running application.
Exploit / POC
ToendaCMS Connector.PHP Arbitrary File Upload Vulnerability
The following exploit is available:
The following exploit is available:
Solution / Fix
ToendaCMS Connector.PHP Arbitrary File Upload Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
References
ToendaCMS Connector.PHP Arbitrary File Upload Vulnerability
References:
References: