| Title |
PHPsysInfo Multiple Input Validation Vulnerabilities |
| Published |
2005-11-14-12:00AM |
| Updated |
2005-11-23-04:47PM |
| Class |
Input Validation Error |
| CVE |
CVE-2005-3347 CVE-2005-3348 CVE-2003-0536 |
| Remote |
Yes |
| Local |
No |
| Credit |
The vendor disclosed these vulnerabilities. |
| Vulnerable |
phpSysInfo phpSysInfo 2.4
phpSysInfo phpSysInfo 2.3
phpSysInfo phpSysInfo 2.1
phpSysInfo phpSysInfo 2.0
Debian Linux 3.0
Debian Linux 3.0 alpha
Debian Linux 3.0 arm
Debian Linux 3.0 hppa
Debian Linux 3.0 ia32
Debian Linux 3.0 ia64
Debian Linux 3.0 m68k
Debian Linux 3.0 mips
Debian Linux 3.0 mipsel
Debian Linux 3.0 ppc
Debian Linux 3.0 s/390
Debian Linux 3.0 sparc
MandrakeSoft Corporate Server 3.0 x86_64
MandrakeSoft Corporate Server 3.0
Gentoo Linux
eGroupWare eGroupWare 1.0 .0.007
Debian Linux 3.1
Debian Linux 3.1 alpha
Debian Linux 3.1 amd64
Debian Linux 3.1 arm
Debian Linux 3.1 hppa
Debian Linux 3.1 ia32
Debian Linux 3.1 ia64
Debian Linux 3.1 m68k
Debian Linux 3.1 mips
Debian Linux 3.1 mipsel
Debian Linux 3.1 ppc
Debian Linux 3.1 s/390
Debian Linux 3.1 sparc
Gentoo Linux
Debian Linux 3.1 sparc
Debian Linux 3.1 s/390
Debian Linux 3.1 ppc
Debian Linux 3.1 mipsel
Debian Linux 3.1 mips
Debian Linux 3.1 m68k
Debian Linux 3.1 ia64
Debian Linux 3.1 ia32
Debian Linux 3.1 hppa
Debian Linux 3.1 arm
Debian Linux 3.1 amd64
Debian Linux 3.1 alpha
Debian Linux 3.1
Debian Linux 3.0 sparc
Debian Linux 3.0 s/390
Debian Linux 3.0 ppc
Debian Linux 3.0 mipsel
Debian Linux 3.0 mips
Debian Linux 3.0 m68k
Debian Linux 3.0 ia64
Debian Linux 3.0 ia32
Debian Linux 3.0 hppa
Debian Linux 3.0 arm
Debian Linux 3.0 alpha
Debian Linux 3.0 |
| Not Vulnerable |
phpSysInfo phpSysInfo 2.4.1 |
| Code |
No exploit is required.
Example URI have been provided:
http://www.example.com/index.php?_SERVER[HTTP_ACCEPT_LANGUAGE]=../../README%00 http://www.example.com/index.php?_SERVER[HTTP_ACCEPT_LANGUAGE]=../../README%00&lng=../../README%00
http://www.example.com/index.php?sensor_program=lmsensors.inc.php/../../README%00
http://www.example.com/index.php?VERSION=%22%3E%3Cscript%3Ealert('xss')%3C/script%3E
|
| TXT |
 |