[UNIX] logahead UNU Arbitrary File Uploading
- From: SecuriTeam <support@xxxxxxxxxxxxxx>
- Date: 27 Dec 2006 21:17:13 +0200
The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com
- - promotion
The SecuriTeam alerts list - Free, Accurate, Independent.
Get your security news from a reliable source.
http://www.securiteam.com/mailinglist.html
- - - - - - - - -
logahead UNU Arbitrary File Uploading
------------------------------------------------------------------------
SUMMARY
<ogahead - the ajaxified blogging engine using PHP4 and mySQL database by
James from the UK.> logahead is an "ajaxified blogging engine using PHP4
and mySQL database by James from the UK". A vulnerability in logahead
allows remote attackers to upload arbitrary files to the server.
DETAILS
Vulnerable Systems:
* logahead version 1.0
A remote attacher is able to upload, including PHP files, and to perform
arbitrary commands inside the server victim by utilizing the following
URL: http://www.server-victim/extras/plugins/widged/_widged.php?A=U&D=
ADDITIONAL INFORMATION
The information has been provided by <mailto:corryl80@xxxxxxxxx> CorryL.
The original article can be found at: <http://www.kasamba.com/CorryL>
http://www.kasamba.com/CorryL
========================================
This bulletin is sent to members of the SecuriTeam mailing list.
To unsubscribe from the list, send mail with an empty subject line and body to: list-unsubscribe@xxxxxxxxxxxxxx
In order to subscribe to the mailing list, simply forward this email to: list-subscribe@xxxxxxxxxxxxxx
====================
====================
DISCLAIMER:
The information in this bulletin is provided "AS IS" without warranty of any kind.
In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages.
- Prev by Date: [UNIX] WordPress Persistent XSS (templates.php)
- Next by Date: [NT] iso_wincmd Plugin for Total Commander Buffer Overflow Vulnerability
- Previous by thread: [UNIX] WordPress Persistent XSS (templates.php)
- Next by thread: [NT] iso_wincmd Plugin for Total Commander Buffer Overflow Vulnerability
- Index(es):
Relevant Pages
- [UNIX] PEAR LiveUser Arbitrary File Access
... The following security advisory is sent to the securiteam mailing list, and can be
found at the SecuriTeam web site: http://www.securiteam.com ... PEAR LiveUser Arbitrary File
Access ... There is an issue with how extracted cookie data is handled by the ...
(Securiteam) - [NT] DeskNow Mail and Collaboration Server Directory Traversal Vulnerabilities
... The following security advisory is sent to the securiteam mailing list, and can be
found at the SecuriTeam web site: http://www.securiteam.com ... Collaboration Server is
"a full-featured and integrated mail and instant ... attachment upload feature that may
be exploited to upload files to ... * DeskNow Mail and Collaboration Server version 2.5.12
and prior ... (Securiteam) - [UNIX] LightBlog Arbitrary File Upload Vulnerability
... The following security advisory is sent to the securiteam mailing list, and can be
found at the SecuriTeam web site: http://www.securiteam.com ... LightBlog Arbitrary File Upload
Vulnerability ... (Securiteam) - [UNIX] Multiple Vulnerabilities in PHP (Information Discloser, File Access, Negative Reference, Inte
... The following security advisory is sent to the securiteam mailing list, and can be
found at the SecuriTeam web site: http://www.securiteam.com ... Traversal, Arbitrary File Upload)
... PHP has been found to contain multiple vulnerabilities that allow ... malicious
users to execute arbitrary code on the server side, ... (Securiteam) - [UNIX] singapore Image Gallery Web Application Multiple Vulnerabilities
... The following security advisory is sent to the securiteam mailing list, and can be
found at the SecuriTeam web site: http://www.securiteam.com ... Multiple vulnerabilities were
found in the singapore Image Gallery Web ... showThumbmethod allows arbitrary file download.
... user to upload arbitrary PHP scripts instead of image files. ... (Securiteam)