Textor Webmasters Limited ListRec.pl Input Validation Vulnerability
BID:3328
Info
Textor Webmasters Limited ListRec.pl Input Validation Vulnerability
| Bugtraq ID: | 3328 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 12 2001 12:00AM |
| Updated: | Sep 12 2001 12:00AM |
| Credit: | This vulnerability was submitted to BugTraq on September 12th, 2001 by Alexey Sintsov <[email protected]>. |
| Vulnerable: |
Textor Webmasters Ltd listrec.pl 1.0 |
| Not Vulnerable: | |
Discussion
Textor Webmasters Limited ListRec.pl Input Validation Vulnerability
Textor Webmasters Ltd offers a series of pre-packaged web content management solutions, including the 'listrec.pl' script.
'listrec.pl' does not adequately validate user-supplied input. It is possible for an attacker to craft a malicious web request which will cause remote commands to be executed on the host(with the privileges of the webserver process). This is due to the fact that 'listrec.pl' does not filter shell metacharacters from web requests.
Additionally, because of the nature of insufficient input validation, this issue may allow the attacker to craft to view arbitrary web-readable files via a directory traversal attack.
NOTE: The vendor, Textor Webmasters Ltd, claims that although shell metacharacters are not filtered, the nature of the program prevents this issue from being exploited to execute arbitrary commands.
Textor Webmasters Ltd offers a series of pre-packaged web content management solutions, including the 'listrec.pl' script.
'listrec.pl' does not adequately validate user-supplied input. It is possible for an attacker to craft a malicious web request which will cause remote commands to be executed on the host(with the privileges of the webserver process). This is due to the fact that 'listrec.pl' does not filter shell metacharacters from web requests.
Additionally, because of the nature of insufficient input validation, this issue may allow the attacker to craft to view arbitrary web-readable files via a directory traversal attack.
NOTE: The vendor, Textor Webmasters Ltd, claims that although shell metacharacters are not filtered, the nature of the program prevents this issue from being exploited to execute arbitrary commands.
Exploit / POC
Textor Webmasters Limited ListRec.pl Input Validation Vulnerability
This issue can be exploited with a web browser.
This issue can be exploited with a web browser.
Solution / Fix
Textor Webmasters Limited ListRec.pl Input Validation Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Textor Webmasters Limited ListRec.pl Input Validation Vulnerability
References:
References:
- Textor Homepage (Textor Webmasters Ltd)