Powerboards User Account Arbitrary File Creation Vulnerability
BID:4473
Info
Powerboards User Account Arbitrary File Creation Vulnerability
| Bugtraq ID: | 4473 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 09 2002 12:00AM |
| Updated: | Apr 09 2002 12:00AM |
| Credit: | Discovered by frog frog <[email protected]>. |
| Vulnerable: |
Powerboards Powerboards 2.2 b |
| Not Vulnerable: | |
Discussion
Powerboards User Account Arbitrary File Creation Vulnerability
Powerboards is a bulletin board application developed in PHP.
An issue has been reported in Powerboards, which allows a user to create files and retrieve those created files.
Reportedly, when a user signs up to the service a file is created with the chosen username as the filename. The file contains user information and can be disclosed to remote users via a web request. Requesting a file of any known user will disclose sensitive user information.
This issue can potentially be used to execute arbitrary code on the host. If a user creates an account containing malicious content, upon the user submitting a web request to retrieve the known file, the malicious content could execute.
Powerboards is a bulletin board application developed in PHP.
An issue has been reported in Powerboards, which allows a user to create files and retrieve those created files.
Reportedly, when a user signs up to the service a file is created with the chosen username as the filename. The file contains user information and can be disclosed to remote users via a web request. Requesting a file of any known user will disclose sensitive user information.
This issue can potentially be used to execute arbitrary code on the host. If a user creates an account containing malicious content, upon the user submitting a web request to retrieve the known file, the malicious content could execute.
Exploit / POC
Powerboards User Account Arbitrary File Creation Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Powerboards User Account Arbitrary File Creation Vulnerability
References:
References:
- Multiples trous dans le forum Powerboard (frog frog )
- Powerboards Homepage (Powerboards)