close
Secunia Advisory: SA30768  
Release Date: 2008-06-23

Critical:
Highly critical
Impact: Exposure of system information
Exposure of sensitive information
System access
Where: From remote
Solution Status: Unpatched

Software:RSS-aggregator

  This advisory is currently marked as unpatched!
- Companies can be alerted when a patch is released!
Description:
Ghost Hacker has discovered a vulnerability in RSS-aggregator, which can be exploited by malicious people to disclose sensitive information or compromise a vulnerable system.

Input passed to the "path" parameter in display.php is not properly verified before being used to include files. This can be exploited to include arbitrary files from local or external resources.

Successful exploitation requires that "register_globals" is enabled. Successful exploitation from external resources (FTP servers) requires that "allow_url_fopen" and "allow_url_include" are enabled.

Solution:
Edit the source code to ensure that input is properly verified.

Provided and/or discovered by:
Ghost Hacker

Original Advisory:
http://milw0rm.com/exploits/5900

資料來源 http://secunia.com/advisories/30768/
arrow
arrow
    全站熱搜
    創作者介紹
    創作者 ivan0914 的頭像
    ivan0914

    I'n Blog 之萬象真藏

    ivan0914 發表在 痞客邦 留言(0) 人氣()