vendor:
Openfire
by:
hyp3rlinx
5,5
CVSS
MEDIUM
Unrestricted File Upload
N/A
CWE
Product Name: Openfire
Affected Version From: Openfire 3.10.2
Affected Version To: Openfire 3.10.2
Patch Exists: N/A
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Local
2015
Openfire Unrestricted File Upload
Application specifies Plugin files (.jar) can be uploaded directly by using the form, however so can the following: .exe, .php, .jsp, .py, .sh. Exploit code: choose some malicious file using the File browser and click 'upload plugin' at http://localhost:9090/plugin-admin.jsp. Our malicious uploaded files will be stored under /openfire/plugins directory.
Mitigation:
N/A