Leszek Krupinski L-Forum File Disclosure Vulnerability
BID:5463
Info
Leszek Krupinski L-Forum File Disclosure Vulnerability
| Bugtraq ID: | 5463 |
| Class: | Design Error |
| CVE: |
CVE-2002-1460 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 14 2002 12:00AM |
| Updated: | Jul 11 2009 03:56PM |
| Credit: | Discovery of this vulnerability credited to Ulf Harnhammar <[email protected]>. |
| Vulnerable: |
Leszek Krupinski L-Forum 2.4 .0 |
| Not Vulnerable: | |
Discussion
Leszek Krupinski L-Forum File Disclosure Vulnerability
Reportedly, L-Forum may disclose contents of arbitrary files to attackers. The file upload mechanism in L-Forum doesn't properly check the existence of four global variables (attachment, attachment_name, attachment_size and attachment_type) that are set for every uploaded file.
Thus an attacker may be able to obtain access to arbitrary system files.
Reportedly, L-Forum may disclose contents of arbitrary files to attackers. The file upload mechanism in L-Forum doesn't properly check the existence of four global variables (attachment, attachment_name, attachment_size and attachment_type) that are set for every uploaded file.
Thus an attacker may be able to obtain access to arbitrary system files.
Exploit / POC
Leszek Krupinski L-Forum File Disclosure Vulnerability
There is no exploit code required.
There is no exploit code required.
Solution / Fix
Leszek Krupinski L-Forum File Disclosure Vulnerability
Solution:
The following patch is available:
Leszek Krupinski L-Forum 2.4 .0
Solution:
The following patch is available:
Leszek Krupinski L-Forum 2.4 .0
-
Leszek Krupinski Security patch for L-Forum 2.4.0
http://sourceforge.net/tracker/download.php?group_id=53716&atid=471343 &file_id=26687&aid=579278
References
Leszek Krupinski L-Forum File Disclosure Vulnerability
References:
References:
- L-Forum Home Page (Leszek Krupinski)