Sebastian Bunka myphpPagetool Arbitrary Code Execution Vulnerability
BID:3394
Info
Sebastian Bunka myphpPagetool Arbitrary Code Execution Vulnerability
| Bugtraq ID: | 3394 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 02 2001 12:00AM |
| Updated: | Oct 02 2001 12:00AM |
| Credit: | This vulnerability was submitted to BugTraq on October 2nd, 2001 by atil <[email protected]> and genetics <[email protected]>. |
| Vulnerable: |
Sebastian Bunka myphpPagetool 0.4.3 -1 |
| Not Vulnerable: | |
Discussion
Sebastian Bunka myphpPagetool Arbitrary Code Execution Vulnerability
myphpPagetool is an application used to maintain a web site using a mysql database, which stores and manage all web pages and their contents. myphpPagetool is written in PHP and maintained by Sebastian Bunka.
A problem exists in myphpPagetool that will allow a remote attacker to execute arbitrary code on a host running the software(with the privileges of the webserver process). It is possible to supply arbitrary data to the $include variable. This variable is used to specify a file containing PHP code that is to be executed. As a result, the affected script may be redirected to execute arbitrary code located on an external host, as specified by the attacker.
This issue can be exploited if the remote attacker submits a maliciously crafted URL.
myphpPagetool is an application used to maintain a web site using a mysql database, which stores and manage all web pages and their contents. myphpPagetool is written in PHP and maintained by Sebastian Bunka.
A problem exists in myphpPagetool that will allow a remote attacker to execute arbitrary code on a host running the software(with the privileges of the webserver process). It is possible to supply arbitrary data to the $include variable. This variable is used to specify a file containing PHP code that is to be executed. As a result, the affected script may be redirected to execute arbitrary code located on an external host, as specified by the attacker.
This issue can be exploited if the remote attacker submits a maliciously crafted URL.
Exploit / POC
Sebastian Bunka myphpPagetool Arbitrary Code Execution Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Sebastian Bunka myphpPagetool Arbitrary Code Execution Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Sebastian Bunka myphpPagetool Arbitrary Code Execution Vulnerability
References:
References:
- myphpPagetool Product Homepage (Sebastian Bunka)