what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

Drupal 7.x Search Module Path Disclosure

Drupal 7.x Search Module Path Disclosure
Posted Mar 14, 2012
Authored by Ursu Mihail

The Search module in Drupal version 7.x suffers from a path disclosure vulnerability.

tags | exploit, info disclosure
SHA-256 | 2cb98aabe430fa8a3632585b5b1bb940d31ac363c2c9e56cabfc26ea0bac5afa

Drupal 7.x Search Module Path Disclosure

Change Mirror Download
Drupal 7.x Search Module - Full Path Disclosure
==============
Summary

Full path disclosure due to insufficient input validation in the search module.
==============
Description

Performing a search with the "keys" parameter set as an array, an error message shows the full path of the Drupal installation, leading to possible further attacks.
For the error messages to be displayed, php.ini's display_errors must be On.
Authentication: Not Needed
==============
Mitigation

Correct input validation for the "key" parameters
==============
Exploit PoC

example.com/?q=search&keys[]=securitate.md
==============
Affected Versions

Versions 7 < 7.12 are affected.
Not tested on 6.
==============
Credits

Ursu Mihail [ http://securitate.md ]
==============
Disclosure Timeline

Reported to vendor on 1 Mar 2012.
Response from vendor:
Disclosure of the path is not considered a security risk.
Drupal has a configuration setting which allows PHP warnings to be printed to the screen for debugging purposes... For production websites, it is a good idea to turn this off, and the messages will not be displayed.
==============
Comments

Unfortunately for them, many sites display errors in production.
==============

Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    0 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close