vendor:
Joysale Advanced Classifieds Script
by:
Mutlu Benmutlu
8,8
CVSS
HIGH
Arbitrary File Upload
434
CWE
Product Name: Joysale Advanced Classifieds Script
Affected Version From: Joysale v2.2.1
Affected Version To: Joysale v2.2.1
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: MacOS Sierra 10.12.5 / Kali Linux
2017
JoySale Arbitrary File Upload
Vendor informed about vulnerability, they are going to release fix. Joysale v2.2.1 (latest version) vulnerable to attack. While uploading image file, you can change the content in it, there is only user controls for file type. After you post vulnerable code via file upload, server saves your file in temp folder.
Mitigation:
Vendor is going to release a fix for this vulnerability.