Nuggetz 'ajaxsave.php' Multiple Directory Traversal Vulnerabilities
BID:41811
Info
Nuggetz 'ajaxsave.php' Multiple Directory Traversal Vulnerabilities
| Bugtraq ID: | 41811 |
| Class: | Input Validation Error |
| CVE: |
CVE-2009-4315 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 10 2009 12:00AM |
| Updated: | Dec 10 2009 12:00AM |
| Credit: | Amol Naik |
| Vulnerable: |
Eantics Nuggetz 1.0 |
| Not Vulnerable: |
Eantics Nuggetz 1.0.1 |
Discussion
Nuggetz 'ajaxsave.php' Multiple Directory Traversal Vulnerabilities
Nuggetz is prone to multiple directory-traversal vulnerabilities because it fails to sufficiently sanitize user-supplied input.
Exploiting these issues may allow an attacker to create or modify arbitrary files within the context of the webserver.
Nuggetz 1.0 is vulnerable; other versions may also be affected.
Nuggetz is prone to multiple directory-traversal vulnerabilities because it fails to sufficiently sanitize user-supplied input.
Exploiting these issues may allow an attacker to create or modify arbitrary files within the context of the webserver.
Nuggetz 1.0 is vulnerable; other versions may also be affected.
Exploit / POC
Nuggetz 'ajaxsave.php' Multiple Directory Traversal Vulnerabilities
Attackers can use a browser to exploit these issues.
The following proof-of-concept is available:
Attackers can use a browser to exploit these issues.
The following proof-of-concept is available:
Solution / Fix
Nuggetz 'ajaxsave.php' Multiple Directory Traversal Vulnerabilities
Solution:
Updates are available; please see the references for more information.
Solution:
Updates are available; please see the references for more information.
References
Nuggetz 'ajaxsave.php' Multiple Directory Traversal Vulnerabilities
References:
References:
- Nuggetz Changelog (eantics)
- Nuggetz Homepage (eantics)