vendor:
SOO Portal 2.0
by:
Net.Edit0r
7,5
CVSS
HIGH
Remote Upload Shell Vulnerability
434
CWE
Product Name: SOO Portal 2.0
Affected Version From: 2.0
Affected Version To: 2.0
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows Server 2008
2010
SOOP Portal 2.0 Remote Upload Shell Vulnerability
A vulnerability in SOOP Portal 2.0 allows an attacker to upload a malicious ASP shell to the server. An attacker can register on the site and then navigate to the member_form.asp page with the do=5&mid=4 parameters. The current avatar option allows an attacker to browse and upload a malicious ASP shell. The shell is then renamed with the .asp;.jpg extension. The attacker can then access the shell from the uploads folder.
Mitigation:
Ensure that the application is configured to only allow the upload of files with the appropriate file extensions and that the application is configured to block the upload of malicious files.