LightBlog 'view_member.php' Local File Include Vulnerability
BID:27837
Info
LightBlog 'view_member.php' Local File Include Vulnerability
| Bugtraq ID: | 27837 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-0840 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 17 2008 12:00AM |
| Updated: | May 07 2015 05:32PM |
| Credit: | muuratsalo discovered this vulnerability. |
| Vulnerable: |
PublicWarehouse.co.uk LightBlog 9.8 PublicWarehouse.co.uk LightBlog 9.6 |
| Not Vulnerable: | |
Discussion
LightBlog 'view_member.php' Local File Include Vulnerability
LightBlog is prone to a local file-include vulnerability because it fails to properly sanitize user-supplied input.
Exploiting this issue may allow an attacker to access potentially sensitive information and execute arbitrary local scripts in the context of the affected application.
This issue affects LightBlog 9.6 and 9.8; other versions may also be vulnerable.
LightBlog is prone to a local file-include vulnerability because it fails to properly sanitize user-supplied input.
Exploiting this issue may allow an attacker to access potentially sensitive information and execute arbitrary local scripts in the context of the affected application.
This issue affects LightBlog 9.6 and 9.8; other versions may also be vulnerable.
Exploit / POC
LightBlog 'view_member.php' Local File Include Vulnerability
Attackers can use a browser to exploit this issue.
The following proof-of-concept URI is available:
http://www.example.com/view_member.php?username=../../../../../../../../../../etc/passwd%00
Attackers can use a browser to exploit this issue.
The following proof-of-concept URI is available:
http://www.example.com/view_member.php?username=../../../../../../../../../../etc/passwd%00
Solution / Fix
LightBlog 'view_member.php' Local File Include Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
LightBlog 'view_member.php' Local File Include Vulnerability
References:
References:
- LightBlog Homepage (PublicWarehouse.co.uk)
- lightblog 9.6 local file inclusion vulnerability ('muuratsalo experimental hack lab'
)