XiVO 'id' Parameter Arbitrary File Download Vulnerability
BID:56432
Info
XiVO 'id' Parameter Arbitrary File Download Vulnerability
| Bugtraq ID: | 56432 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 07 2012 12:00AM |
| Updated: | Nov 08 2012 12:10PM |
| Credit: | Mr.Un1k0d3r |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
XiVO 'id' Parameter Arbitrary File Download Vulnerability
XiVO is prone to a vulnerability that lets attackers download arbitrary files because the application fails to sufficiently sanitize user-supplied input.
An attacker can exploit this issue to download arbitrary files within the context of the web server process. Information obtained may aid in further attacks.
XiVO 12.21 is vulnerable; other versions may also be affected.
XiVO is prone to a vulnerability that lets attackers download arbitrary files because the application fails to sufficiently sanitize user-supplied input.
An attacker can exploit this issue to download arbitrary files within the context of the web server process. Information obtained may aid in further attacks.
XiVO 12.21 is vulnerable; other versions may also be affected.
Exploit / POC
XiVO 'id' Parameter Arbitrary File Download Vulnerability
Attackers can use a browser to exploit this issue.
The following example URI is available:
http://www.example.com/xivo/configuration/index.php/manage/certificate/?act=export&id=../../../../etc/passwd
Attackers can use a browser to exploit this issue.
The following example URI is available:
http://www.example.com/xivo/configuration/index.php/manage/certificate/?act=export&id=../../../../etc/passwd
Solution / Fix
XiVO 'id' Parameter Arbitrary File Download Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
XiVO 'id' Parameter Arbitrary File Download Vulnerability
References:
References: