vendor:
qdPM
by:
loneferret
7,5
CVSS
HIGH
Arbitrary File Upload
434
CWE
Product Name: qdPM
Affected Version From: 7
Affected Version To: 7
Patch Exists: NO
Related CWE: N/A
CPE: a:qdpm:qdpm
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP / XAMPP
2012
Exploit qdPM v.7 Arbitrary File upload
qdPM is a free web-based project management tool suitable for a small team working on multiple projects. It is vulnerable to an arbitrary file upload vulnerability, which allows an attacker to upload a small php shell, and access it remotely. The application does not verify the file's extension when uploading an image for a user's profile. One needs a valid user account to upload the file, and no authentication is required to access the file.
Mitigation:
Ensure that the application verifies the file's extension when uploading an image for a user's profile.