xml2owl 'showCode.php' Command Execution Vulnerability
BID:27050
Info
xml2owl 'showCode.php' Command Execution Vulnerability
| Bugtraq ID: | 27050 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-6632 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 28 2007 12:00AM |
| Updated: | May 07 2015 05:34PM |
| Credit: | MhZ91 is credited with the discovery of this issue. |
| Vulnerable: |
xml2owl xml2owl 0.1.1 |
| Not Vulnerable: | |
Discussion
xml2owl 'showCode.php' Command Execution Vulnerability
The 'xml2owl' program is prone to a vulnerability that allows attackers to execute arbitrary PHP commands.
An attacker may leverage this issue to run arbitrary PHP commands with the privileges of the server process. This can compromise the application and possibly the underlying server.
This issue affects xml2owl 0.1.1; other versions may be vulnerable as well.
The 'xml2owl' program is prone to a vulnerability that allows attackers to execute arbitrary PHP commands.
An attacker may leverage this issue to run arbitrary PHP commands with the privileges of the server process. This can compromise the application and possibly the underlying server.
This issue affects xml2owl 0.1.1; other versions may be vulnerable as well.
Exploit / POC
xml2owl 'showCode.php' Command Execution Vulnerability
An attacker can exploit this vulnerability with a browser.
The following proof of concept is available:
http://www.example.com/showCode.php?path=;uname -a
An attacker can exploit this vulnerability with a browser.
The following proof of concept is available:
http://www.example.com/showCode.php?path=;uname -a
Solution / Fix
xml2owl 'showCode.php' Command Execution Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].