Papoo Plugin.PHP Authentication Bypass Vulnerability
BID:24634
Info
Papoo Plugin.PHP Authentication Bypass Vulnerability
| Bugtraq ID: | 24634 |
| Class: | Access Validation Error |
| CVE: |
CVE-2007-3494 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 25 2007 12:00AM |
| Updated: | May 07 2015 05:37PM |
| Credit: | Nico Leidecker is credited with the discovery of this vulnerability. |
| Vulnerable: |
phpPolls phpPolls 1.0.3 |
| Not Vulnerable: | |
Discussion
Papoo Plugin.PHP Authentication Bypass Vulnerability
Papoo is prone to an authentication-bypass vulnerability because the application fails to check user privileges when accessing the administration pages.
An attacker can exploit this issue to gain access to administration plugins. This may lead to other attacks.
This issue affects Papoo 3.6; prior versions may also be affected.
Papoo is prone to an authentication-bypass vulnerability because the application fails to check user privileges when accessing the administration pages.
An attacker can exploit this issue to gain access to administration plugins. This may lead to other attacks.
This issue affects Papoo 3.6; prior versions may also be affected.
Exploit / POC
Papoo Plugin.PHP Authentication Bypass Vulnerability
Attackers can exploit this issue via a browser.
The following proof-of-concept URI is available:
http://www.example.com/interna/plugin.php?template=devtools/templates/newdump_backend.html
Attackers can exploit this issue via a browser.
The following proof-of-concept URI is available:
http://www.example.com/interna/plugin.php?template=devtools/templates/newdump_backend.html
Solution / Fix
Papoo Plugin.PHP Authentication Bypass Vulnerability
Solution:
The vendor released an update to address this issue. Please see the references for more information.
Solution:
The vendor released an update to address this issue. Please see the references for more information.
References
Papoo Plugin.PHP Authentication Bypass Vulnerability
References:
References: