PT-2007-7313 · Dokeos · Dokeos

Romancyxhacker

·

Publicado

2007-12-20

·

Atualizado

2017-09-29

·

CVE-2007-6479

CVSS v2.0

4.9

Média

VetorAV:N/AC:M/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Dokeos version 1.8.4
Description The issue concerns an unrestricted file upload vulnerability in the "My productions" component of the "My profile" page, located at main/auth/profile.php. This allows remote authenticated users to upload and execute arbitrary PHP files by using a filename with a double extension. The uploaded files can then be accessed through a URI under main/upload/users/.
Recommendations For Dokeos version 1.8.4, consider restricting file uploads to only allowed extensions and validating user input to prevent the upload of files with double extensions as a temporary workaround. Restrict access to the main/upload/users/ directory to minimize the risk of exploitation.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2007-6479

Produtos afetados

Dokeos