PT-2025-50764 · Xbtitfm · Xbtitfm
Xbtitfm Team
·
Published
2025-12-11
·
Updated
2025-12-12
·
CVE-2024-58313
CVSS v4.0
8.6
High
| Vector | AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
xbtitFM version 4.1.18
Description
The software contains an insecure file upload issue. Authenticated attackers with administrative privileges can upload and execute arbitrary PHP code through the file hosting feature. File type restrictions can be bypassed by modifying the Content-Type header to image/gif and adding GIF89a magic bytes, allowing the upload of web shells. These web shells can then execute system commands using alternate PHP tags. The vulnerable feature is the
file hosting functionality. The attack involves manipulating the Content-Type header and utilizing alternate PHP tags.Recommendations
Apply a fix to restrict file uploads to authorized file types.
Implement stricter validation of uploaded files, including checking file content and magic bytes.
Disable or remove the
file hosting feature if it is not essential.Exploit
Fix
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Xbtitfm