phpSecurePages Remote Arbitrary Command Execution Vulnerability
BID:2638
Info
phpSecurePages Remote Arbitrary Command Execution Vulnerability
| Bugtraq ID: | 2638 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 23 2001 12:00AM |
| Updated: | Apr 23 2001 12:00AM |
| Credit: | Discovered by SecureReality and first published in an advisory on April 23, 2001. |
| Vulnerable: |
Paul Kruyt phpSecurePages 0.24 Beta Paul Kruyt phpSecurePages 0.23 Beta Paul Kruyt phpSecurePages 0.22 Beta Paul Kruyt phpSecurePages 0.21 Beta Paul Kruyt phpSecurePages 0.20 Beta Paul Kruyt phpSecurePages 0.19 Beta Paul Kruyt phpSecurePages 0.18 Beta Paul Kruyt phpSecurePages 0.17 Beta Paul Kruyt phpSecurePages 0.16 Beta Paul Kruyt phpSecurePages 0.15 Beta Paul Kruyt phpSecurePages 0.14 Beta Paul Kruyt phpSecurePages 0.13 Beta Paul Kruyt phpSecurePages 0.12 Beta Paul Kruyt phpSecurePages 0.11 Beta |
| Not Vulnerable: |
Paul Kruyt phpSecurePages 0.26 Beta Paul Kruyt phpSecurePages 0.25 Beta |
Discussion
phpSecurePages Remote Arbitrary Command Execution Vulnerability
phpSecurePages is a PHP-based web authentication system that allows administrators to 'secure' pages without using mechanisms such as HTTP authentication.
This set of scripts contains a vulnerability that may allow remote users to execute commands on the vulnerable webserver. phpSecurePages fails to ensure that a variable internal to the scripts, READ_CONFIG, is not supplied by a remote user. As a result, remote users may be able to manipulate the interpretation of the script using this variable, possibly injecting PHP code that will be executed.
Exploitation of this vulnerability may yield interactive local access to the target host for the attacker.
phpSecurePages is a PHP-based web authentication system that allows administrators to 'secure' pages without using mechanisms such as HTTP authentication.
This set of scripts contains a vulnerability that may allow remote users to execute commands on the vulnerable webserver. phpSecurePages fails to ensure that a variable internal to the scripts, READ_CONFIG, is not supplied by a remote user. As a result, remote users may be able to manipulate the interpretation of the script using this variable, possibly injecting PHP code that will be executed.
Exploitation of this vulnerability may yield interactive local access to the target host for the attacker.
Exploit / POC
phpSecurePages Remote Arbitrary Command Execution Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
phpSecurePages Remote Arbitrary Command Execution Vulnerability
Solution:
The vendor has released an fixed version of phpSecurePages.
SecureReality has released a source code patch that will eliminate this vulnerability.
Solution:
The vendor has released an fixed version of phpSecurePages.
SecureReality has released a source code patch that will eliminate this vulnerability.
References
phpSecurePages Remote Arbitrary Command Execution Vulnerability
References:
References: