vendor:
eggBlog
by:
Juri Gianni aka yeat
7,5
CVSS
HIGH
Local Directory Transversal
22
CWE
Product Name: eggBlog
Affected Version From: 4.1.1
Affected Version To: 4.1.1
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
eggBlog <= 4.1.1 Local Directory Transversal Exploit
eggBlog contains one flaw that allows an attacker to carry out a local directory transversal attack. The issue is due to 'select_image.php' script not properly sanitizing user input supplied to the 'dir' GET variable. Note: you may upload image files with double ext on _lib/openwysiwyg/addons/imagelibrary/insert_image.php
Mitigation:
Sanitize user input supplied to the 'dir' GET variable.