what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

ZH2004-09SA.txt

ZH2004-09SA.txt
Posted Feb 23, 2004
Authored by G00db0y | Site zone-h.org

PhpNewsManager version 1.46 allows for arbitrary file reading due to being susceptible to a directory traversal attack.

tags | exploit, arbitrary
SHA-256 | 340c2bf12eaf6e9a64fbb3a6e669b7646c444d064e1d432c3c336d3153659923

ZH2004-09SA.txt

Change Mirror Download


ZH2004-09SA (security advisory): PhpNewsManager Remote arbitrary files retrieving

Discovered: 02 february 2004

Vendor Contacted: 10 february 2004

Published: 23 february 2004

Name: PhpNewsManager

Affected Systems: 1.46

Issue: Remote file retrieving

Author: G00db0y from Zone-h Security Labs - g00db0y@zone-h.org - zetalabs@zone-h.org

Vendor: http://www.skintech.org


Description

***********

Zone-h Security Team has discovered a flaw in PhpNewsManager. There is a vulnerability in the current version of PhpNewsManager that allows an attacker to retrieve arbitrary files from the webserver with its priviledges.
"phpNewsManager is the ultimate news manager for your website. The script is a whole solution for managing websites and supports many features with multi-level user access."


Details

*******


It's possibile for a remote attacker to retrieve any file from a webserver.

For example try this:

http://address/directory/functions.php?clang=../../../../../../../../../../../../etc/passwd




Solution:

*********

The vendor has been contacted and a patch was not yet produced.




G00db0y from Zone-h Security Labs - g00db0y@zone-h.org - zetalabs@zone-h.org

http://www.zone-h.org/en/advisories/read/id=4024/
Login or Register to add favorites

File Archive:

July 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jul 1st
    27 Files
  • 2
    Jul 2nd
    10 Files
  • 3
    Jul 3rd
    35 Files
  • 4
    Jul 4th
    27 Files
  • 5
    Jul 5th
    18 Files
  • 6
    Jul 6th
    0 Files
  • 7
    Jul 7th
    0 Files
  • 8
    Jul 8th
    28 Files
  • 9
    Jul 9th
    44 Files
  • 10
    Jul 10th
    24 Files
  • 11
    Jul 11th
    25 Files
  • 12
    Jul 12th
    11 Files
  • 13
    Jul 13th
    0 Files
  • 14
    Jul 14th
    0 Files
  • 15
    Jul 15th
    0 Files
  • 16
    Jul 16th
    0 Files
  • 17
    Jul 17th
    0 Files
  • 18
    Jul 18th
    0 Files
  • 19
    Jul 19th
    0 Files
  • 20
    Jul 20th
    0 Files
  • 21
    Jul 21st
    0 Files
  • 22
    Jul 22nd
    0 Files
  • 23
    Jul 23rd
    0 Files
  • 24
    Jul 24th
    0 Files
  • 25
    Jul 25th
    0 Files
  • 26
    Jul 26th
    0 Files
  • 27
    Jul 27th
    0 Files
  • 28
    Jul 28th
    0 Files
  • 29
    Jul 29th
    0 Files
  • 30
    Jul 30th
    0 Files
  • 31
    Jul 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close