Subscribe Me Pro远程目录遍历漏洞

Subscribe Me Pro远程目录遍历漏洞

漏洞ID 1109065 漏洞类型 路径遍历
发布时间 2005-09-13 更新时间 2005-10-20
图片[1]-Subscribe Me Pro远程目录遍历漏洞-安全小百科CVE编号 CVE-2005-2952
图片[2]-Subscribe Me Pro远程目录遍历漏洞-安全小百科CNNVD-ID CNNVD-200509-143
漏洞平台 PHP CVSS评分 5.0
|漏洞来源
https://www.exploit-db.com/exploits/26252
https://cxsecurity.com/issue/WLB-2005090004
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200509-143
|漏洞详情
SubscribeMePro是一款基于Web的邮件列表管理系统。SubscribeMePro在处理用户请求时存在输入验证漏洞,远程攻击者可能利用此漏洞遍历服务器目录,以Web进程权限访问任意文件。SubscribeMePro的s.pl脚本没有充分检查过滤l参数的内容,远程攻击者可以在数据中插入”../../”类似的目录遍历串,从而访问系统上的任意权限。
|漏洞EXP
source: http://www.securityfocus.com/bid/14817/info

Subscribe Me Pro is prone to a directory traversal vulnerability. This is due to a lack of proper sanitization of user-supplied input.

Exploitation of this vulnerability could lead to a loss of confidentiality as arbitrary files are disclosed to an attacker. Information obtained through this attack may aid in further attacks against the underlying system.

Subscribe Me Pro 2.044.09P and prior are affected by this vulnerability.

http://www.example.com/[dir]/s.pl?e=1&subscribe=subscribe&l=../../../../../../../../etc/passwd%00&SUBMIT=%20%20Submit%20%20
http://www.example.com/[dir]/s.pl?e=enter%20your%20email%20address%20here&subscribe=subscribe&l=../../../../../../../../etc/passwd%00
|参考资料

来源:XF
名称:subscribemepro-unknown-directory-traversal(22249)
链接:http://xforce.iss.net/xforce/xfdb/22249
来源:BID
名称:14817
链接:http://www.securityfocus.com/bid/14817
来源:MISC
链接:http://www.h4cky0u.org/advisories/HYA-2005-007-subscribe-me-pro.txt
来源:SECUNIA
名称:16796
链接:http://secunia.com/advisories/16796/
来源:SREASON
名称:4
链接:http://securityreason.com/securityalert/4
来源:BUGTRAQ
名称:20050913SubscribeMePro2.044.09PandpriorDirectoryTraversal
链接:http://marc.theaimsgroup.com/?l=bugtraq&m;=112662785418368&w;=2

相关推荐: Finjan SurfinGate 7.0 – ‘.ASCII’ File Extension File Filter Circumvention

Finjan SurfinGate 7.0 – ‘.ASCII’ File Extension File Filter Circumvention 漏洞ID 1055165 漏洞类型 发布时间 2005-06-14 更新时间 2005-06-14 CVE编号 …

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享