20060911 PHProg : Local File Inclusion + XSS + Full pathmailing list
http://marc.info/?l=full-disclosure&m=115796646100433&w=2 CVE-2006-4754
PHProg 1.0 - 'index.php?album' Cross-Site Scripting
Record summary
CVE-2006-4754 has a selected CVSS score of 6.8; EIP currently links 1 catalogued exploit.
Description
Cross-site scripting (XSS) vulnerability in index.php in PHProg before 1.1 allows remote attackers to inject arbitrary web script or HTML via the album parameter, which is used in an opendir call. NOTE: the same primary issue can be used for full path disclosure with an invalid parameter that reveals the installation path in an error message.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBPHProg 1.0 - 'index.php?album' Cross-Site ScriptingExploitDB exploitby cdg393Not analyzed1 file
References
821849Third-party advisory
http://secunia.com/advisories/21849 comscripts.comConfirmation
http://www.comscripts.com/scripts/php.phprog-album-photo-php.2117.html pconfig.com
http://www.pconfig.com/cdg393/adviso/PHProg.txt 19957vdb entry
http://www.securityfocus.com/bid/19957 phprog-index-path-disclosure(28845)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/28845 phprog-index-xss(28846)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/28846 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2006-4754