Uploadify 'uploadify.php' Multiple Input Validation Vulnerabilities
BID:62413
Info
Uploadify 'uploadify.php' Multiple Input Validation Vulnerabilities
| Bugtraq ID: | 62413 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 13 2013 12:00AM |
| Updated: | Oct 28 2013 12:20AM |
| Credit: | MustLive |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Uploadify 'uploadify.php' Multiple Input Validation Vulnerabilities
Uploadify is prone to an arbitrary file download vulnerability , an arbitrary-file-upload vulnerability and a cross-site scripting vulnerability because it fails to sufficiently sanitize user-supplied data.
Exploiting these issues may allow a remote attacker to download arbitrary files in the context of the webserver process and execute arbitrary HTML and script code in the browser of an unsuspecting user in the context of the affected site, execute arbitrary script code in the context of the webserver hosting the affected application. This may let the attacker steal cookie-based authentication credentials and launch other attacks.
Uploadify is prone to an arbitrary file download vulnerability , an arbitrary-file-upload vulnerability and a cross-site scripting vulnerability because it fails to sufficiently sanitize user-supplied data.
Exploiting these issues may allow a remote attacker to download arbitrary files in the context of the webserver process and execute arbitrary HTML and script code in the browser of an unsuspecting user in the context of the affected site, execute arbitrary script code in the context of the webserver hosting the affected application. This may let the attacker steal cookie-based authentication credentials and launch other attacks.
Exploit / POC
Uploadify 'uploadify.php' Multiple Input Validation Vulnerabilities
Attackers can exploit these issues using browser.
Attackers can exploit these issues using browser.
Solution / Fix
Uploadify 'uploadify.php' Multiple Input Validation Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Uploadify 'uploadify.php' Multiple Input Validation Vulnerabilities
References:
References: