PT-2007-7313 · Dokeos · Dokeos

Romancyxhacker

·

Published

2007-12-20

·

Updated

2017-09-29

·

CVE-2007-6479

CVSS v2.0

4.9

Medium

VectorAV:N/AC:M/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Dokeos version 1.8.4
Description The issue concerns an unrestricted file upload vulnerability in the "My productions" component of the "My profile" page, located at main/auth/profile.php. This allows remote authenticated users to upload and execute arbitrary PHP files by using a filename with a double extension. The uploaded files can then be accessed through a URI under main/upload/users/.
Recommendations For Dokeos version 1.8.4, consider restricting file uploads to only allowed extensions and validating user input to prevent the upload of files with double extensions as a temporary workaround. Restrict access to the main/upload/users/ directory to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-6479

Affected Products

Dokeos