vendor:
Portal Raven
by:
Sun Army
7,5
CVSS
HIGH
Remote Upload Shell Vulnerability
N/A
CWE
Product Name: Portal Raven
Affected Version From: Raven 1.0b
Affected Version To: Raven 1.0b
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Win 2003
2010
SOOP Portal Raven 1.0b Remote Upload Shell Vulnerability
Register on the site, rename the shell to .asp.jpg, go to http://site/forum/register.asp?fpn=2, browse and upload the shell, and view the shell address in the text box.
Mitigation:
Ensure that the web application is configured to only allow the upload of files with the appropriate file extensions.