|
|
PHPStore Car Dealers Arbitrary PHP File Upload Vulnerability
|
A vulnerability has been identified in PHPStore Car Dealers, which could be exploited by malicious users to compromise a vulnerable web server. This issue is caused by input validation errors in the file upload functionality when processing upload images, which could be exploited by authenticated users to upload malicious PHP scripts and execute arbitrary commands with the privileges of the web server.
PHPStore Car Dealers
VUPEN Security is not aware of any vendor-supplied patch.
http://www.vupen.com/english/advisories/2008/3098
Vulnerability reported by ZoRLu.
2008-11-11 : Initial release
If you have additional information or corrections for this security advisory please submit them via our contact form. | |
|
|
|
Monthly Statistics |
 |
|
|
|
| |
|
Try VUPEN
VNS |
 |
|
 |
|
| |
|
 |
| |
|
|
|
|