|
Family: CGI abuses --> Category: attack
PHP iCalendar Remote File Inclusion Vulnerability Vulnerability Scan
Vulnerability Scan Summary Checks for remote file inclusion vulnerability in PHP iCalendar
Detailed Explanation for this Vulnerability Test
Synopsis :
The remote web server contains a PHP script that is prone to a remote
file include vulnerability.
Description :
The remote host appears to be running PHP iCalendar, a web-based iCal
file viewer / parser written in PHP.
The version of PHP icalendar installed on the remote host fails to
sanitize the 'phpicalendar' cookie before using it in 'index.php' to
include PHP code from a separate file. By leveraging this flaw, an
unauthenticated attacker may be able to view arbitrary files on the
remote host and execute arbitrary PHP code, possibly taken from
third-party hosts. Successful exploitation requires that PHP's
'magic_quotes' setting be disabled, that its 'allow_url_fopen' setting
be enabled, or that a possible hacker be able to place PHP files on the
remote host.
See also :
http://lists.grok.org.uk/pipermail/full-disclosure/2005-October/038142.html
Solution :
Upgrade to a version of PHP iCalendar later than 2.0.1 when it becomes
available.
Threat Level:
Medium / CVSS Base Score : 6
(AV:R/AC:H/Au:NR/C:P/A:P/I:P/B:N)
Click HERE for more information and discussions on this network vulnerability scan.
|