Hosting Controller Browse.ASP File Disclosure Vulnerability
BID:4778
Info
Hosting Controller Browse.ASP File Disclosure Vulnerability
| Bugtraq ID: | 4778 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 19 2002 12:00AM |
| Updated: | May 19 2002 12:00AM |
| Credit: | Discovery of this issue is credited to Bao Dai Nhan <[email protected]>. |
| Vulnerable: |
Hosting Controller Hosting Controller 2002 Hosting Controller Hosting Controller 1.4.1 Hosting Controller Hosting Controller 1.4 b Hosting Controller Hosting Controller 1.4 Hosting Controller Hosting Controller 1.3 Hosting Controller Hosting Controller 1.1 |
| Not Vulnerable: | |
Discussion
Hosting Controller Browse.ASP File Disclosure Vulnerability
Hosting Controller is an application which consolidates all hosting tasks into one interface. Hosting Controller runs on Microsoft Windows operating systems.
The 'browse.asp' script is prone to an issue which may allow a remote attacker to view the contents of arbitrary files and directories. The attacker must provide a malicious value as a URL parameter in a request for the affected script, which will be read with the privileges of the web server process.
Hosting Controller is an application which consolidates all hosting tasks into one interface. Hosting Controller runs on Microsoft Windows operating systems.
The 'browse.asp' script is prone to an issue which may allow a remote attacker to view the contents of arbitrary files and directories. The attacker must provide a malicious value as a URL parameter in a request for the affected script, which will be read with the privileges of the web server process.
Exploit / POC
Hosting Controller Browse.ASP File Disclosure Vulnerability
This issue may be exploited with a web browser. The following example may be used to reproduce this condition:
http://target/admin/browse.asp?FilePath=c:\&Opt=2&level=0
This issue may be exploited with a web browser. The following example may be used to reproduce this condition:
http://target/admin/browse.asp?FilePath=c:\&Opt=2&level=0
Solution / Fix
Hosting Controller Browse.ASP File Disclosure Vulnerability
Solution:
A patch is available:
Hosting Controller Hosting Controller 2002
Hosting Controller Hosting Controller 1.4 b
Hosting Controller Hosting Controller 1.4
Hosting Controller Hosting Controller 1.4.1
Solution:
A patch is available:
Hosting Controller Hosting Controller 2002
-
Hosting Controller drivebrowse.zip
http://hostingcontroller.com/english/patches/ForAll/download/drivebrow se.zip
Hosting Controller Hosting Controller 1.4 b
-
Hosting Controller drivebrowse.zip
http://hostingcontroller.com/english/patches/ForAll/download/drivebrow se.zip
Hosting Controller Hosting Controller 1.4
-
Hosting Controller drivebrowse.zip
http://hostingcontroller.com/english/patches/ForAll/download/drivebrow se.zip
Hosting Controller Hosting Controller 1.4.1
-
Hosting Controller drivebrowse.zip
http://hostingcontroller.com/english/patches/ForAll/download/drivebrow se.zip
References
Hosting Controller Browse.ASP File Disclosure Vulnerability
References:
References:
- Hosting Controller Homepage (Hosting Controller)