Drupal Boost Module Arbitrary Directory Creation Vulnerability
BID:36561
Info
Drupal Boost Module Arbitrary Directory Creation Vulnerability
| Bugtraq ID: | 36561 |
| Class: | Design Error |
| CVE: |
CVE-2009-3654 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 30 2009 12:00AM |
| Updated: | Apr 13 2015 09:06PM |
| Credit: | Hans Rossel |
| Vulnerable: |
Drupal Boost 6.x-1.02 Drupal Boost 6.x-1.01 Drupal Boost 6.x-1.00 |
| Not Vulnerable: |
Drupal Boost 6.x-1.03 |
Discussion
Drupal Boost Module Arbitrary Directory Creation Vulnerability
The Boost module for Drupal is prone to a vulnerability that allows attackers to create arbitrary directories.
An unauthorized user can exploit this issue to create arbitrary directories within the context of the webserver. Successful exploits may result in a denial-of-service condition because the maximum number of directories the application can handle is 35000.
Versions prior to Boost 6.x-1.03 are vulnerable.
The Boost module for Drupal is prone to a vulnerability that allows attackers to create arbitrary directories.
An unauthorized user can exploit this issue to create arbitrary directories within the context of the webserver. Successful exploits may result in a denial-of-service condition because the maximum number of directories the application can handle is 35000.
Versions prior to Boost 6.x-1.03 are vulnerable.
Exploit / POC
Drupal Boost Module Arbitrary Directory Creation Vulnerability
An attacker can exploit this issue via a browser.
An attacker can exploit this issue via a browser.
Solution / Fix
Drupal Boost Module Arbitrary Directory Creation Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
Drupal Boost Module Arbitrary Directory Creation Vulnerability
References:
References:
- boost 6.x-1.03 (Drupal)
- Drupal Language Switcher Dropdown Homepage (Drupal)
- SA-CONTRIB-2009-068 - Boost - Filesystem Directory Creation (Drupal)