MODx 'htcmime.php' Source Code Information Disclosure Vulnerability
BID:27096
Info
MODx 'htcmime.php' Source Code Information Disclosure Vulnerability
| Bugtraq ID: | 27096 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-0094 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 02 2008 12:00AM |
| Updated: | May 07 2015 05:33PM |
| Credit: | AmnPardaz Security Research Team is credited with the discovery of this issue. |
| Vulnerable: |
MODx MODx 0.9.6 .1 |
| Not Vulnerable: | |
Discussion
MODx 'htcmime.php' Source Code Information Disclosure Vulnerability
MODx is prone to a vulnerability that allows attackers to access source code because the application fails to properly sanitize user-supplied input.
An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable system in the context of the webserver process. Information obtained may aid in further attacks.
MODx 0.9.6.1 is vulnerable; other versions may also be affected.
MODx is prone to a vulnerability that allows attackers to access source code because the application fails to properly sanitize user-supplied input.
An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable system in the context of the webserver process. Information obtained may aid in further attacks.
MODx 0.9.6.1 is vulnerable; other versions may also be affected.
Exploit / POC
MODx 'htcmime.php' Source Code Information Disclosure Vulnerability
Attackers can exploit this vulnerability with a browser.
The following example URI is available:
http://www.example.com/modx-0.9.6.1/assets/js/htcmime.php?file=../../manager/includes/config.inc.php%00.htc
Attackers can exploit this vulnerability with a browser.
The following example URI is available:
http://www.example.com/modx-0.9.6.1/assets/js/htcmime.php?file=../../manager/includes/config.inc.php%00.htc
Solution / Fix
MODx 'htcmime.php' Source Code Information Disclosure Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
MODx 'htcmime.php' Source Code Information Disclosure Vulnerability
References:
References: