PT-2018-14201 · Zzcms · Zzcms

Publicado

2018-09-30

·

Atualizado

2020-08-24

·

CVE-2018-17798

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions zzcms version 8.3
Description An issue was discovered that allows remote attackers to delete arbitrary files via an absolute pathname in the oldimg parameter in an action=modify request to the "user/ztconfig.php" endpoint. This can be leveraged for database access by deleting install.lock.
Recommendations For zzcms version 8.3, avoid using the oldimg parameter in the "user/ztconfig.php" endpoint until the issue is resolved. Restrict access to the action=modify request in the "user/ztconfig.php" endpoint to minimize the risk of exploitation.

Exploit

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-17798

Produtos afetados

Zzcms