DMXReady SDK Arbitrary File Download Vulnerability
BID:33281
Info
DMXReady SDK Arbitrary File Download Vulnerability
| Bugtraq ID: | 33281 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 14 2009 12:00AM |
| Updated: | Jan 20 2009 04:32PM |
| Credit: | ajann |
| Vulnerable: |
DMXReady SDK 1.1 |
| Not Vulnerable: | |
Discussion
DMXReady SDK Arbitrary File Download Vulnerability
DMXReady SDK is prone to an issue that allows an attacker to download arbitrary files.
The attacker can exploit this issue to obtain sensitive information.
This issue affects versions up to and including DMXReady SDK 1.1.
DMXReady SDK is prone to an issue that allows an attacker to download arbitrary files.
The attacker can exploit this issue to obtain sensitive information.
This issue affects versions up to and including DMXReady SDK 1.1.
Exploit / POC
DMXReady SDK Arbitrary File Download Vulnerability
Attackers can use a browser to exploit this issue.
The following example URI is available:
http://www.example.com/path/control_panel/download_link.asp?filename=inc_faqsmanager_qs_jump_menu.asp&filelocation={FILE PATH}
Attackers can use a browser to exploit this issue.
The following example URI is available:
http://www.example.com/path/control_panel/download_link.asp?filename=inc_faqsmanager_qs_jump_menu.asp&filelocation={FILE PATH}
Solution / Fix
DMXReady SDK Arbitrary File Download Vulnerability
Solution:
Updates are available; please see the references for more information.
Solution:
Updates are available; please see the references for more information.
References
DMXReady SDK Arbitrary File Download Vulnerability
References:
References:
- *Important Security Note For DMXReady Users* (DMXReady)
- DMXReady Homepage (DMXReady)
- DMXReady SDK (DMXReady)