vendor:
Piwigo
by:
Gjoko 'LiquidWorm' Krstic
7,5
CVSS
HIGH
Remote Arbitrary File Read/Delete
22
CWE
Product Name: Piwigo
Affected Version From: 2.4.6
Affected Version To: 2.4.6
Patch Exists: YES
Related CWE: N/A
CPE: a:piwigo_project:piwigo
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Microsoft Windows 7 Ultimate SP1 (EN), Apache 2.4.2 (Win32), PHP 5.4.4, MySQL 5.5.25a
2013
Piwigo 2.4.6 (install.php) Remote Arbitrary File Read/Delete Vulnerability
Input passed to the 'dl' parameter in 'install.php' script is not properly sanitised before being used to get the contents of a resource or delete files. This can be exploited to read and delete arbitrary data from local resources with the permissions of the web server via directory traversal attack.
Mitigation:
The vendor has released a patch to address this vulnerability.