PT-2007-7313 · Dokeos · Dokeos
Romancyxhacker
·
Publicado
2007-12-20
·
Atualizado
2017-09-29
·
CVE-2007-6479
CVSS v2.0
4.9
Média
| Vetor | AV:N/AC:M/Au:S/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Dokeos version 1.8.4
Description
The issue concerns an unrestricted file upload vulnerability in the "My productions" component of the "My profile" page, located at main/auth/profile.php. This allows remote authenticated users to upload and execute arbitrary PHP files by using a filename with a double extension. The uploaded files can then be accessed through a URI under main/upload/users/.
Recommendations
For Dokeos version 1.8.4, consider restricting file uploads to only allowed extensions and validating user input to prevent the upload of files with double extensions as a temporary workaround. Restrict access to the main/upload/users/ directory to minimize the risk of exploitation.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Dokeos