PT-2018-10302 · Mybiz · Myprocurenet

Ahmad Ramadhan Amizudin

+3

·

Publicado

2018-05-14

·

Atualizado

2019-11-12

·

CVE-2018-11091

CVSS v3.1

9.9

Crítica

VetorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MyBiz MyProcureNet version 5.0.0
Description An issue allows a malicious file to be uploaded to the webserver, enabling an attacker to upload a script and issue operating system commands. This occurs because the HiddenFieldControlCustomWhiteListedExtensions parameter can be adjusted by an attacker to add arbitrary extensions to the whitelist during upload, allowing malicious files to be uploaded and executed to take over the server.
Recommendations For MyBiz MyProcureNet version 5.0.0, restrict access to the file upload feature and remove any custom extensions from the HiddenFieldControlCustomWhiteListedExtensions parameter to prevent malicious file uploads. Additionally, consider disabling the file upload feature until a fix is available to prevent exploitation.

Correção

Unrestricted File Upload

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-11091

Produtos afetados

Myprocurenet