Midicart PHP Arbitrary File Upload Vulnerability
BID:5855
Info
Midicart PHP Arbitrary File Upload Vulnerability
| Bugtraq ID: | 5855 |
| Class: | Configuration Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 02 2002 12:00AM |
| Updated: | Oct 02 2002 12:00AM |
| Credit: | Discovery of this vulnerability credited to "Frog Man" <[email protected]>. |
| Vulnerable: |
Coxco Support Midicart PHP Plus Coxco Support Midicart PHP Maxi Coxco Support Midicart PHP |
| Not Vulnerable: | |
Discussion
Midicart PHP Arbitrary File Upload Vulnerability
A problem with the default installation of Midicart PHP may make it possible for remote users to gain access to sensitive information.
The default installation of Midicart PHP does not place sufficient access control on files residing in the 'admin' folder. Due to this lack of access control, it is possible for a remote attacker to gain access to this file and upload arbitrary files to a vulnerable system.
A problem with the default installation of Midicart PHP may make it possible for remote users to gain access to sensitive information.
The default installation of Midicart PHP does not place sufficient access control on files residing in the 'admin' folder. Due to this lack of access control, it is possible for a remote attacker to gain access to this file and upload arbitrary files to a vulnerable system.
Exploit / POC
Midicart PHP Arbitrary File Upload Vulnerability
The following proof of concept was provided:
http://<site>/admin/upload.php
The following proof of concept was provided:
http://<site>/admin/upload.php
Solution / Fix
Midicart PHP Arbitrary File Upload Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.