InterPhoto Image Gallery Directory Traversal and Arbitrary File Upload Vulnerabilities
BID:42554
Info
InterPhoto Image Gallery Directory Traversal and Arbitrary File Upload Vulnerabilities
| Bugtraq ID: | 42554 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 19 2010 12:00AM |
| Updated: | Aug 19 2010 12:00AM |
| Credit: | Secunia Research and Russ McRee |
| Vulnerable: |
Weentech InterPhoto Image Gallery 2.4 |
| Not Vulnerable: | |
Discussion
InterPhoto Image Gallery Directory Traversal and Arbitrary File Upload Vulnerabilities
InterPhoto Image Gallery is prone to a directory-traversal vulnerability and an arbitrary-file-upload vulnerability because the application fails to sanitize user-supplied input.
An attacker can exploit these issues to obtain sensitive information and to upload arbitrary code and run it in the context of the webserver process.
InterPhoto Image Gallery 2.4.0 is vulnerable; other versions may also be affected.
InterPhoto Image Gallery is prone to a directory-traversal vulnerability and an arbitrary-file-upload vulnerability because the application fails to sanitize user-supplied input.
An attacker can exploit these issues to obtain sensitive information and to upload arbitrary code and run it in the context of the webserver process.
InterPhoto Image Gallery 2.4.0 is vulnerable; other versions may also be affected.
Exploit / POC
InterPhoto Image Gallery Directory Traversal and Arbitrary File Upload Vulnerabilities
Attackers can exploit these issues with a browser.
Attackers can exploit these issues with a browser.
Solution / Fix
InterPhoto Image Gallery Directory Traversal and Arbitrary File Upload Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
InterPhoto Image Gallery Directory Traversal and Arbitrary File Upload Vulnerabilities
References:
References:
- HIO-2010-0706 InterPhoto Gallery File Upload Vulnerability (Russ McRee)
- InterPhoto Gallery "file" Directory Traversal Vulnerability (Secunia Research)
- InterPhoto Image Gallery Project Page (Weentech)
- Vendor Homepage (Weentech)