vendor:
Dodoupload
by:
indoushka
7,5
CVSS
HIGH
Shell Upload
434
CWE
Product Name: Dodoupload
Affected Version From: 1.3
Affected Version To: 1.3
Patch Exists: NO
Related CWE: N/A
CPE: a:dodoupload:dodoupload:1.3
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, Linux
2008
Dodo Upload Version 1.3 Upload Shell (By pass) Vulnerability
A vulnerability exists in Dodo Upload Version 1.3 which allows an attacker to bypass the uploader by creating a .htaccess file with a code that sets the handler to application/x-httpd-php. This allows the attacker to upload a malicious PHP file disguised as an mp3 file. The attacker can then access the malicious file by navigating to the URL of the file.
Mitigation:
Ensure that the uploader is configured to only accept certain file types and that the .htaccess file is not allowed to be uploaded.