RETIRED: MobileCartly 'savepage.php' Arbitrary File Create Vulnerability
BID:55399
Info
RETIRED: MobileCartly 'savepage.php' Arbitrary File Create Vulnerability
| Bugtraq ID: | 55399 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 05 2012 12:00AM |
| Updated: | Sep 10 2012 01:09PM |
| Credit: | sinn3r, Yakir Wizman |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
RETIRED: MobileCartly 'savepage.php' Arbitrary File Create Vulnerability
MobileCartly is prone to a vulnerability that let attackers create arbitrary files on an affected computer in the context of the web server.
An attacker can exploit this issue to create arbitrary files. This will allow the attacker to fully compromise the affected machine.
MobileCartly 1.0 is vulnerable; prior versions may also be affected.
RETIRED: This BID is retired because it is a duplicate of BID 54970 (MobileCartly 'savepage.php' Arbitrary File Write Vulnerability).
MobileCartly is prone to a vulnerability that let attackers create arbitrary files on an affected computer in the context of the web server.
An attacker can exploit this issue to create arbitrary files. This will allow the attacker to fully compromise the affected machine.
MobileCartly 1.0 is vulnerable; prior versions may also be affected.
RETIRED: This BID is retired because it is a duplicate of BID 54970 (MobileCartly 'savepage.php' Arbitrary File Write Vulnerability).
Exploit / POC
RETIRED: MobileCartly 'savepage.php' Arbitrary File Create Vulnerability
Attackers can use a browser to exploit this issue.
The following exploit is available:
Attackers can use a browser to exploit this issue.
The following exploit is available:
Solution / Fix
RETIRED: MobileCartly 'savepage.php' Arbitrary File Create Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
RETIRED: MobileCartly 'savepage.php' Arbitrary File Create Vulnerability
References:
References: