Vulnerability CVE-2006-3554


Published: 2006-07-12   Modified: 2012-02-12

Description:
Directory traversal vulnerability in index.php in MKPortal 1.0.1 Final allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the language cookie, as demonstrated by using a gl_session cookie to inject PHP sequences into the error.log file, which is then included by index.php with malicious commands accessible by the ind parameter.

See advisories in our WLB2 database:
Topic
Author
Date
High
MKPortal 1.0.1 Final ($ind) File Include Vulnerability (perl)
stormhacker hotm...
14.07.2006

Type:

CWE-Other

CVSS2 => (AV:N/AC:L/Au:N/C:P/I:P/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
7.5/10
6.4/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
Partial
Partial
Affected software
Mkportal -> Mkportal 

 References:
http://securityreason.com/securityalert/1234
http://securitytracker.com/id?1016403
http://www.securityfocus.com/archive/1/438614/100/100/threaded
http://www.securityfocus.com/bid/18707
http://www.vupen.com/english/advisories/2006/2598
http://www.worlddefacers.de/Public/WD-MKP.txt
https://exchange.xforce.ibmcloud.com/vulnerabilities/27451

Copyright 2024, cxsecurity.com

 

Back to Top