PT-2009-6439 · Nuggetz · Nuggetz Cms

Published

2009-12-14

·

Updated

2017-08-17

·

CVE-2009-4315

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Nuggetz CMS version 1.0
Description The issue allows remote attackers to create or modify arbitrary files via a .. (dot dot) in the nugget parameter and a modified pagevalue parameter. This can be exploited to execute arbitrary PHP code by creating and accessing a .php file.
Recommendations For Nuggetz CMS version 1.0, consider disabling the admin/ajaxsave.php file or restricting access to it until a patch is available. Additionally, enabling magic quotes gpc may help mitigate the issue. As a temporary workaround, restrict the use of the nugget and pagevalue parameters in the affected API endpoint.

Exploit

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-4315

Affected Products

Nuggetz Cms