header-logo
Suggest Exploit
vendor:
Bigace 2.7.5
by:
Net.Edit0r
7.5
CVSS
HIGH
Remote Upload file Vulnerability
434
CWE
Product Name: Bigace 2.7.5
Affected Version From: 2.7.2005
Affected Version To: 2.7.2005
Patch Exists: Yes
Related CWE: N/A
CPE: a:bigace:bigace:2.7.5
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Linux /php
2011

Bigace 2.7.5 Remote Upload file Vulnerability

Bigace 2.7.5 is vulnerable to a remote upload file vulnerability. An attacker can exploit this vulnerability by sending a malicious file to the /addon/FCKeditor/editor/filemanager/connectors/uploadtest.html page.

Mitigation:

Upgrade to the latest version of Bigace 2.7.5
Source

Exploit-DB raw data:

==========================================
Bigace 2.7.5 Remote Upload file Vulnerability
==========================================

[~]######################################### InformatioN
#############################################[~]

[~] Title     : Bigace 2.7.5 Remote Upload file Vulnerability
[~] Author    : Net.Edit0r
[~] Vendor or Software Link  : http://www.bigace.de/bigace-2.7.5.html
[~] Email     : Black.hat.tm@gmail.com
[~] Data  : 2011-03-29
[~] Google dork: "Powered by Bigace 2.7.5"
[~] Category:  [Webapps]
[~] Tested on: [Linux /php]

[~]#########################################   ExploiT
#############################################[~]

[~] ExploiT         :

/addon/FCKeditor/editor/filemanager/connectors/uploadtest.html

[~] Example         :

http://127.0.0.1//addon/FCKeditor/editor/filemanager/connectors/uploadtest.html

[~]######################################### ThankS To ...
############################################[~]

[~] Black Hat Group Member  :

Net.Edit0r & DarkCoder & fronk & Amir-MaGic & H3x & Milad.C0nn3ct0r #BHG

[~] IRANIAN Young HackerZ # Persian Gulf

[~]#########################################   FinisH :D
#############################################[~]################[~]