Joomla Expose Component Uploadimg.PHP Arbitrary File Upload Vulnerability
BID:24958
Info
Joomla Expose Component Uploadimg.PHP Arbitrary File Upload Vulnerability
| Bugtraq ID: | 24958 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-3932 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 04 2007 12:00AM |
| Updated: | May 07 2015 05:36PM |
| Credit: | Cold z3ro is credited with the discovery of this vulnerability. |
| Vulnerable: |
Joomla Expose Component RC35 |
| Not Vulnerable: | |
Discussion
Joomla Expose Component Uploadimg.PHP Arbitrary File Upload Vulnerability
Joomla Expose component is prone to a vulnerability that lets attackers upload arbitrary files.
This issue occurs because the application fails to sufficiently sanitize user-supplied input. Exploiting this issue could allow an attacker to upload and execute arbitrary script code in the context of the affected webserver process. This may help the attacker compromise the application; other attacks are possible.
Joomla Expose RC35 and prior versions are reported vulnerable.
Joomla Expose component is prone to a vulnerability that lets attackers upload arbitrary files.
This issue occurs because the application fails to sufficiently sanitize user-supplied input. Exploiting this issue could allow an attacker to upload and execute arbitrary script code in the context of the affected webserver process. This may help the attacker compromise the application; other attacks are possible.
Joomla Expose RC35 and prior versions are reported vulnerable.
Exploit / POC
Joomla Expose Component Uploadimg.PHP Arbitrary File Upload Vulnerability
Attackers may exploit this issue through a browser.
Exploit information is available:
Attackers may exploit this issue through a browser.
Exploit information is available:
Solution / Fix
Joomla Expose Component Uploadimg.PHP Arbitrary File Upload Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Joomla Expose Component Uploadimg.PHP Arbitrary File Upload Vulnerability
References:
References:
- Expose Project Page (GTEK)
- Joomla! Homepage (Joomla )