Achievo Document Types Section Arbitrary File Upload Vulnerability
BID:37219
Info
Achievo Document Types Section Arbitrary File Upload Vulnerability
| Bugtraq ID: | 37219 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 04 2009 12:00AM |
| Updated: | Dec 10 2009 12:44AM |
| Credit: | Nahuel Grisolia from CYBSEC S.A |
| Vulnerable: |
Achievo Achievo 1.4.2 Achievo Achievo 1.4 Achievo Achievo 1.3.4 Achievo Achievo 1.3.2 Achievo Achievo 1.2.1 Achievo Achievo 1.1 Achievo Achievo 1.2 |
| Not Vulnerable: |
Achievo Achievo 1.4.3 |
Discussion
Achievo Document Types Section Arbitrary File Upload Vulnerability
Achievo is prone to a vulnerability that lets attackers upload arbitrary files. The issue occurs because the application fails to adequately sanitize user-supplied input.
An attacker can exploit this vulnerability to upload arbitrary code and run it in the context of the webserver process. This may facilitate unauthorized access or privilege escalation; other attacks are also possible.
Versions prior to Achievo 1.4.3 are vulnerable.
Achievo is prone to a vulnerability that lets attackers upload arbitrary files. The issue occurs because the application fails to adequately sanitize user-supplied input.
An attacker can exploit this vulnerability to upload arbitrary code and run it in the context of the webserver process. This may facilitate unauthorized access or privilege escalation; other attacks are also possible.
Versions prior to Achievo 1.4.3 are vulnerable.
Exploit / POC
Achievo Document Types Section Arbitrary File Upload Vulnerability
Attackers can use readily available tools to exploit this vulnerability.
Attackers can use readily available tools to exploit this vulnerability.
Solution / Fix
Achievo Document Types Section Arbitrary File Upload Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
Achievo Document Types Section Arbitrary File Upload Vulnerability
References:
References:
- Achievo 1.4.3 release notes - December 3, 2009 (Achievo)
- Achievo Homepage (Achievo)
- Arbitrary File Upload in Achievo 1.4.2 (CYBSEC S.A)