Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-0922

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2006-0922
Last Modified 05 Sep 2008 05:00:34
Published 28 Feb 2006 06:02:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2006-0922

Summary

CubeCart 3.0 through 3.6 does not properly check authorization for an administration session because of a missing auth.inc.php include, which results in an absolute path traversal vulnerability in FileUpload in connector.php (aka upload.php) that allows remote attackers to upload arbitrary files via a modified CurrentFolder parameter in a direct request to admin/filemanager/upload.php.

Vulnerable Systems

Application

  • Devellion Cubecart 3.0.0 Alpha

  • Devellion Cubecart 3.0.0 Alpha-2

  • Devellion Cubecart 3.0.0 Alpha-rgf

  • Devellion Cubecart 3.0.0 Beta

  • Devellion Cubecart 3.0.0 Final

  • Devellion Cubecart 3.0.1

  • Devellion Cubecart 3.0.2

  • Devellion Cubecart 3.0.3

  • Devellion Cubecart 3.0.4

  • Devellion Cubecart 3.0.5

  • Devellion Cubecart 3.0.6


References

MISC - http://www.cubecart.com/site/forums/index.php?showtopic=14972

MISC - http://www.cubecart.com/site/forums/index.php?showtopic=14825

XF - cubecart-connector-file-include(24883)

BID - 16796

BUGTRAQ - 20060223 NSA Group Security Advisory NSAG-¹197-23.02.2006 Vulnerability CubeCart 3.0.0 ? 3.0.6

MISC - http://www.nsag.ru/vuln/892.html

MISC - http://www.cubecart.com/site/forums/index.php?showtopic=14960

MISC - http://www.cubecart.com/site/forums/index.php?showtopic=14817

CONFIRM - http://www.cubecart.com/site/forums/index.php?showtopic=14704

SREASON - 482


Last Updated: 27 May 2016 10:41:50