Automatic Image Upload with Thumbnails for PunBB 'uploadimg.php' Arbitrary File Upload Vulnerability
BID:26925
Info
Automatic Image Upload with Thumbnails for PunBB 'uploadimg.php' Arbitrary File Upload Vulnerability
| Bugtraq ID: | 26925 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 18 2007 12:00AM |
| Updated: | Dec 19 2007 05:21PM |
| Credit: | Peter �?sterberg of FortConsult�??s Security Research Team discovered this issue. |
| Vulnerable: |
Automatic Image Upload with Thumbnails Automatic Image Upload with Thumbnails 1.3.3 Automatic Image Upload with Thumbnails Automatic Image Upload with Thumbnails 1.3.2 |
| Not Vulnerable: | |
Discussion
Automatic Image Upload with Thumbnails for PunBB 'uploadimg.php' Arbitrary File Upload Vulnerability
The Automatic Image Upload with Thumbnails module for PunBB is prone to a vulnerability that lets attackers upload arbitrary files because it fails to adequately sanitize user-supplied input.
NOTE: To exploit this issue, an attacker requires access to a valid user account that is part of a group with file-upload privileges.
An attacker can exploit this issue to execute malicious code in the context of the webserver process. This may allow the attacker to compromise the application and the underlying system; other attacks are also possible.
Automatic Image Upload with Thumbnails 1.3.2 and 1.3.3 are affected; other versions may also be vulnerable.
The Automatic Image Upload with Thumbnails module for PunBB is prone to a vulnerability that lets attackers upload arbitrary files because it fails to adequately sanitize user-supplied input.
NOTE: To exploit this issue, an attacker requires access to a valid user account that is part of a group with file-upload privileges.
An attacker can exploit this issue to execute malicious code in the context of the webserver process. This may allow the attacker to compromise the application and the underlying system; other attacks are also possible.
Automatic Image Upload with Thumbnails 1.3.2 and 1.3.3 are affected; other versions may also be vulnerable.
Exploit / POC
Automatic Image Upload with Thumbnails for PunBB 'uploadimg.php' Arbitrary File Upload Vulnerability
Attackers may exploit this issue via a browser.
Attackers may exploit this issue via a browser.
Solution / Fix
Automatic Image Upload with Thumbnails for PunBB 'uploadimg.php' Arbitrary File Upload Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Automatic Image Upload with Thumbnails for PunBB 'uploadimg.php' Arbitrary File Upload Vulnerability
References:
References:
- Vendor Homepage (Automatic Image Upload with Thumbnails)
- SECURITY ADVISORY November 2007 punBB imgUpload extension (FortConsult )