PT-2010-3003 · Dynpg · Dynpg Cms

Eidelweiss

·

Publicado

2010-04-07

·

Atualizado

2021-03-25

·

CVE-2010-1299

CVSS v2.0

5.1

Média

VetorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions DynPG CMS versions 4.1.0 and earlier
Description The issue allows remote attackers to execute arbitrary PHP code. This can be achieved via a URL in the DefineRootToTool parameter to "counter.php", the PathToRoot parameter to "plugins/DPGguestbook/guestbookaction.php", and the get popUpResource parameter to "backendpopup/popup.php". The attack is possible when magic quotes gpc is disabled and register globals is enabled.
Recommendations For DynPG CMS versions 4.1.0 and earlier, consider disabling the register globals setting and enabling magic quotes gpc to mitigate the risk of exploitation. Additionally, as a temporary workaround, restrict access to the vulnerable parameters DefineRootToTool, PathToRoot, and get popUpResource in the respective PHP files until a patch is available.

Exploit

Correção

Code Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2010-1299

Produtos afetados

Dynpg Cms