WWW File Share Pro Unspecified Arbitrary File Upload Vulnerability
BID:29341
Info
WWW File Share Pro Unspecified Arbitrary File Upload Vulnerability
| Bugtraq ID: | 29341 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 22 2008 12:00AM |
| Updated: | May 22 2008 09:04PM |
| Credit: | [email protected] |
| Vulnerable: |
LionMax Software WWW File Share Pro 5.30 |
| Not Vulnerable: | |
Discussion
WWW File Share Pro Unspecified Arbitrary File Upload Vulnerability
WWW File Share Pro is prone to a vulnerability that lets attackers upload arbitrary files.
An attacker can exploit this vulnerability to upload files and execute arbitrary script code in the context of the webserver process. This may aid in further attacks.
Few details are available about this issue; we will update this BID as more information is disclosed.
This issue is reported to affect WWW File Share Pro 5.30.
WWW File Share Pro is prone to a vulnerability that lets attackers upload arbitrary files.
An attacker can exploit this vulnerability to upload files and execute arbitrary script code in the context of the webserver process. This may aid in further attacks.
Few details are available about this issue; we will update this BID as more information is disclosed.
This issue is reported to affect WWW File Share Pro 5.30.
Exploit / POC
WWW File Share Pro Unspecified Arbitrary File Upload Vulnerability
Attackers will likely exploit this issue through a browser.
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Attackers will likely exploit this issue through a browser.
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
WWW File Share Pro Unspecified Arbitrary File Upload Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
WWW File Share Pro Unspecified Arbitrary File Upload Vulnerability
References:
References:
- WWW File Share Pro Product Page (LionMax Software)
- www file share pro 5.30 insecure multiple ([email protected])