AutositePHP Multiple Local File Include and File Overwrite Vulnerabilities
BID:32818
Info
AutositePHP Multiple Local File Include and File Overwrite Vulnerabilities
| Bugtraq ID: | 32818 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 14 2008 12:00AM |
| Updated: | Dec 18 2008 11:22PM |
| Credit: | SirGod |
| Vulnerable: |
AutositePHP AutositePHP 2.0.3 |
| Not Vulnerable: | |
Discussion
AutositePHP Multiple Local File Include and File Overwrite Vulnerabilities
AutositePHP is prone to local file-include vulnerabilities and a file-overwrite vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit these issues to overwrite arbitrary files on the webserver, execute arbitrary local files within the context of the webserver, and obtain sensitive information. By exploiting the arbitrary-file-overwrite and local file-include vulnerabilities at the same time, the attacker may be able to execute remote code.
AutositePHP 2.0.3 is vulnerable; other versions may also be affected.
AutositePHP is prone to local file-include vulnerabilities and a file-overwrite vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit these issues to overwrite arbitrary files on the webserver, execute arbitrary local files within the context of the webserver, and obtain sensitive information. By exploiting the arbitrary-file-overwrite and local file-include vulnerabilities at the same time, the attacker may be able to execute remote code.
AutositePHP 2.0.3 is vulnerable; other versions may also be affected.
Exploit / POC
AutositePHP Multiple Local File Include and File Overwrite Vulnerabilities
Attackers can exploit these issues via a browser.
The following example URIs are available:
http://www.example.com/[path]/index.php?page=users/[Local File]
http://www.example.com/[path]/index.php?page=users/login.php&update=update/[Local File]
http://www.example.com/[path]/pages/Admin/File%20Editor/actions/modify.php?page=pages/[Local File]
Attackers can exploit these issues via a browser.
The following example URIs are available:
http://www.example.com/[path]/index.php?page=users/[Local File]
http://www.example.com/[path]/index.php?page=users/login.php&update=update/[Local File]
http://www.example.com/[path]/pages/Admin/File%20Editor/actions/modify.php?page=pages/[Local File]
Solution / Fix
AutositePHP Multiple Local File Include and File Overwrite Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
AutositePHP Multiple Local File Include and File Overwrite Vulnerabilities
References:
References:
- AutositePHP Project Page (AutositePHP)