ZPanel 'templateparser.class.php' PHP Code Injection Vulnerability
BID:59284
Info
ZPanel 'templateparser.class.php' PHP Code Injection Vulnerability
| Bugtraq ID: | 59284 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 17 2013 12:00AM |
| Updated: | Apr 17 2013 12:00AM |
| Credit: | Sven Slootweg |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
ZPanel 'templateparser.class.php' PHP Code Injection Vulnerability
ZPanel is prone to a remote PHP code-injection vulnerability.
An attacker can exploit this issue to inject and execute arbitrary PHP code in the context of the affected application. This may facilitate a compromise of the application and the underlying system; other attacks are also possible.
ZPanel is prone to a remote PHP code-injection vulnerability.
An attacker can exploit this issue to inject and execute arbitrary PHP code in the context of the affected application. This may facilitate a compromise of the application and the underlying system; other attacks are also possible.
Exploit / POC
ZPanel 'templateparser.class.php' PHP Code Injection Vulnerability
Attackers can exploit this issue through a browser.
The following proof-of-concept is available:
<& bogus']; exec("/etc/zpanel/panel/bin/zsudo touch /root/derp"); echo $value['bogus &>
Attackers can exploit this issue through a browser.
The following proof-of-concept is available:
<& bogus']; exec("/etc/zpanel/panel/bin/zsudo touch /root/derp"); echo $value['bogus &>
Solution / Fix
ZPanel 'templateparser.class.php' PHP Code Injection Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
ZPanel 'templateparser.class.php' PHP Code Injection Vulnerability
References:
References: