RETIRED: Mambo Rssxt Component MosConfig_absolute_path Multiple Remote File Include Vulnerabilities
BID:19593
CVE-2006-4378 |Info
RETIRED: Mambo Rssxt Component MosConfig_absolute_path Multiple Remote File Include Vulnerabilities
| Bugtraq ID: | 19593 |
| Class: | Input Validation Error |
| CVE: |
CVE-2006-4378 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 18 2006 12:00AM |
| Updated: | May 12 2015 07:49PM |
| Credit: | Crackers_Child is credited with the discovery of these vulnerabilities. |
| Vulnerable: |
Mambo RSSXT Component 1.0 |
| Not Vulnerable: | |
Discussion
RETIRED: Mambo Rssxt Component MosConfig_absolute_path Multiple Remote File Include Vulnerabilities
The Mambo Rssxt component for Joomla and Mambo is prone multiple remote file-include vulnerabilities because it fails to properly sanitize user-supplied input.
An attacker can exploit these issues to include an arbitrary remote file containing malicious PHP code and execute it in the context of the webserver process. This may allow the attacker to compromise the application and the underlying system; other attacks are also possible.
Versions 1.0 and prior are vulnerable to these issues; other versions may also be affected.
This BID has been retired.
The Mambo Rssxt component for Joomla and Mambo is prone multiple remote file-include vulnerabilities because it fails to properly sanitize user-supplied input.
An attacker can exploit these issues to include an arbitrary remote file containing malicious PHP code and execute it in the context of the webserver process. This may allow the attacker to compromise the application and the underlying system; other attacks are also possible.
Versions 1.0 and prior are vulnerable to these issues; other versions may also be affected.
This BID has been retired.
Exploit / POC
RETIRED: Mambo Rssxt Component MosConfig_absolute_path Multiple Remote File Include Vulnerabilities
Attackers can exploit these issues via a web client.
The following proof-of-concept URIs are available:
Attackers can exploit these issues via a web client.
The following proof-of-concept URIs are available:
Solution / Fix
RETIRED: Mambo Rssxt Component MosConfig_absolute_path Multiple Remote File Include Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
This BID has been retired.
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
This BID has been retired.
References
RETIRED: Mambo Rssxt Component MosConfig_absolute_path Multiple Remote File Include Vulnerabilities
References:
References:
- Joomla Rssxt <= 1.0 Remote File Include Vulnerability (crackers_child)
- Mambo RSSxt Component Homepage (Mamboxchange)
- Joomla Rssxt <= 1.0 Remote File Include Vulnerability (Crackers_Child)