WordPress UnGallery 'zip' Parameter Local File Disclosure Vulnerability
BID:49271
Info
WordPress UnGallery 'zip' Parameter Local File Disclosure Vulnerability
| Bugtraq ID: | 49271 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 22 2011 12:00AM |
| Updated: | Aug 22 2011 12:00AM |
| Credit: | Reported by vendor. |
| Vulnerable: |
WordPress UnGallery 1.5.7 |
| Not Vulnerable: |
WordPress UnGallery 1.5.8 |
Discussion
WordPress UnGallery 'zip' Parameter Local File Disclosure Vulnerability
The UnGallery plug-in for WordPress is prone to a local file-disclosure vulnerability because it fails to adequately validate user-supplied input.
Exploiting this vulnerability would allow an attacker to obtain potentially sensitive information from local files on computers running the vulnerable application. This may aid in further attacks.
Versions prior to UnGallery 1.5.8 are vulnerable.
The UnGallery plug-in for WordPress is prone to a local file-disclosure vulnerability because it fails to adequately validate user-supplied input.
Exploiting this vulnerability would allow an attacker to obtain potentially sensitive information from local files on computers running the vulnerable application. This may aid in further attacks.
Versions prior to UnGallery 1.5.8 are vulnerable.
Exploit / POC
WordPress UnGallery 'zip' Parameter Local File Disclosure Vulnerability
Attackers can exploit this issue using a browser.
Attackers can exploit this issue using a browser.
Solution / Fix
WordPress UnGallery 'zip' Parameter Local File Disclosure Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
WordPress UnGallery 'zip' Parameter Local File Disclosure Vulnerability
References:
References:
- Changes in ungallery [397601:400553] (WordPress)
- UnGallery Changelog (WordPress)
- WordPress Home Page (WordPress)