OSVDB ID: 43579

Title: WordPress /wp-admin/profile-update.php page Parameter Traversal Arbitrary File Access

Info

Disclosure

Jan 03, 2008

Discovery

Unknown

Dates

Exploit

Jan 03, 2008

Solution

Unknown

Description

WordPress contains a flaw that allows a remote attacker to access arbitrary files outside of the web path. The issue is due to the /wp-admin/profile-update.php script not properly sanitizing user input, specifically directory traversal style attacks (../../) supplied via the 'page' variable.

Classification

Location: Remote / Network Access
Attack Type: Input Manipulation
Impact: Loss of Confidentiality, Loss of Integrity
Exploit: Exploit Public
Disclosure: Uncoordinated Disclosure
OSVDB: Web Related

Solution

Products

WordPress

WordPress

2.0.11

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/43579