vendor:
SilverNews
by:
x0r
9.3
CVSS
HIGH
Authentication Bypass, Local File Inclusion, Remote Code Execution
264
CWE
Product Name: SilverNews
Affected Version From: 02.04
Affected Version To: 02.04
Patch Exists: YES
Related CWE: N/A
CPE: a:silver-scripts:silvernews:2.04
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
SilverNews 2.04 Auth Bypass/LFI/RCE
SilverNews 2.04 is vulnerable to authentication bypass, local file inclusion and remote code execution. An attacker can bypass the authentication by providing username as ' or '1=1 and password as x0r. An attacker can also perform local file inclusion by providing the path of the file in the section parameter of the admin.php file. An attacker can also perform remote code execution by providing malicious code in the show_cat_prefix parameter of the settings.php file.
Mitigation:
The vendor has released a patch to address this vulnerability. It is recommended to upgrade to the latest version of the software.