Pacific Software Carello文件复制及资源泄露漏洞

Pacific Software Carello文件复制及资源泄露漏洞

漏洞ID 1105864 漏洞类型 访问验证错误
发布时间 2000-05-24 更新时间 2005-05-02
图片[1]-Pacific Software Carello文件复制及资源泄露漏洞-安全小百科CVE编号 CVE-2000-0396
图片[2]-Pacific Software Carello文件复制及资源泄露漏洞-安全小百科CNNVD-ID CNNVD-200005-089
漏洞平台 Windows CVSS评分 5.0
|漏洞来源
https://www.exploit-db.com/exploits/19957
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200005-089
|漏洞详情
Carelloshoppingcart软件中add.exe程序存在漏洞。远程攻击者利用此漏洞将可以复制服务器上的文件,攻击者可以读取例如.ASP文件的web脚本的源代码。
|漏洞EXP
source: http://www.securityfocus.com/bid/1245/info

A remote user can gain read and write access on a target machine running Carello shopping cart software.

First, a user may create a duplicate of a known file in a known directory on the target host through add.exe in /scripts/Carello. Accessing http://target/scripts/Carello/add.exe?C:directoryfilename.ext will generate a duplicate file with a "1" appended to the filename (eg. filename.ext1). From here, the remote user would perform a http request of the newly created duplicate file and be able to view the contents of it.

This vulnerability depends on the anonymous internet account having write access to the relevant directories. 

http://target/scripts/Carello/add.exe?C:directoryfilename.ext
|参考资料

来源:BID
名称:1245
链接:http://www.securityfocus.com/bid/1245
来源:BUGTRAQ
名称:20000524Alert:CarelloFileCreationflaw
链接:http://archives.neohapsis.com/archives/bugtraq/2000-05/0285.html

相关推荐: Mabry Software FTPServer/X Controls Unspecified Buffer Overflow Vulnerability

Mabry Software FTPServer/X Controls Unspecified Buffer Overflow Vulnerability 漏洞ID 1098990 漏洞类型 Boundary Condition Error 发布时间 2004…

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享