ImgSvr Template Parameter Local File Include Vulnerability
BID:24853
Info
ImgSvr Template Parameter Local File Include Vulnerability
| Bugtraq ID: | 24853 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-3714 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 10 2007 12:00AM |
| Updated: | May 07 2015 05:37PM |
| Credit: | Tim Brown is credited with the discovery of this vulnerability. |
| Vulnerable: |
ImgSvr ImgSvr 0.6.21 ImgSvr ImgSrv 0.6.5 |
| Not Vulnerable: | |
Discussion
ImgSvr Template Parameter Local File Include Vulnerability
ImgSvr is prone to a local file-include vulnerability because it fails to sanitize user-supplied input.
Attackers may exploit this issue to access files that may contain sensitive information.
UPDATE (December 24, 2007): According to the vendor, this issue was addressed in ImgSvr 0.6.21. However, reports indicate that this version is still vulnerable.
ImgSvr is prone to a local file-include vulnerability because it fails to sanitize user-supplied input.
Attackers may exploit this issue to access files that may contain sensitive information.
UPDATE (December 24, 2007): According to the vendor, this issue was addressed in ImgSvr 0.6.21. However, reports indicate that this version is still vulnerable.
Exploit / POC
ImgSvr Template Parameter Local File Include Vulnerability
Attackers may exploit this issue through a browser.
An example URI has been provided:
GET /?template=../../../../../../../../../../etc/passwd HTTP/1.0
Attackers may exploit this issue through a browser.
An example URI has been provided:
GET /?template=../../../../../../../../../../etc/passwd HTTP/1.0
Solution / Fix
ImgSvr Template Parameter Local File Include Vulnerability
Solution:
UPDATE (December 24, 2007): According to the vendor, this issue was addressed in ImgSvr 0.6.21. However, reports indicate that this version is still vulnerable.
Solution:
UPDATE (December 24, 2007): According to the vendor, this issue was addressed in ImgSvr 0.6.21. However, reports indicate that this version is still vulnerable.
References
ImgSvr Template Parameter Local File Include Vulnerability
References:
References:
- ImgSvr Homepage (ImgSvr)
- Double directory traversal in ImgSvr 0.6.21 (Luigi Auriemma
)