|
|
PHPStore Real Estate Arbitrary PHP File Upload Vulnerability
|
A vulnerability has been identified in PHPStore Real Estate, which could be exploited by malicious users to compromise a vulnerable web server. This issue is caused by input validation errors in the file upload functionality when processing upload images, which could be exploited by authenticated users to upload malicious PHP scripts and execute arbitrary commands with the privileges of the web server.
PHPStore Real Estate
VUPEN Security is not aware of any vendor-supplied patch.
http://www.vupen.com/english/advisories/2008/3101
Vulnerability reported by ZoRLu.
2008-11-11 : Initial release
If you have additional information or corrections for this security advisory please submit them via our contact form. | |
|
|
|
Monthly Statistics |
 |
|
|
|
| |
|
Try VUPEN
VNS |
 |
|
 |
|
| |
|
 |
| |
|
|
|
|