[原文]PHP remote file inclusion vulnerability in news.php in ModernBill 4.3.0 and earlier allows remote attackers to execute arbitrary PHP code by modifying the DIR parameter to reference a URL on a remote web server that contains the code.

[CNNVD]ModernGigabyte ModernBill News.PHP文件包含漏洞(CNNVD-200505-117)

        ModernBill 4.3.0及更早版本的news.php中存在PHP远程文件包含漏洞,远程攻击者可以通过修改DIR参数以引用一个远程web服务器上含有该代码的URL,从而执行任意PHP代码。

CVSS分值: 7.5 [严重(HIGH)]
ModernGigabyte ModernBill News.PHP文件包含漏洞
高危 输入验证
2005-05-02 00:00:00 2006-09-21 00:00:00
ModernBill news.php DIR Parameter Remote File Inclusion
Remote / Network Access Input Manipulation
Loss of Integrity
Exploit Public

- 漏洞描述

ModernBill contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to news.php not properly sanitizing user input supplied to the 'DIR' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.

- 时间线

2005-04-10 Unknow
2005-04-10 Unknow

- 解决方案

Upgrade to version 4.3.1 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.

ModernGigabyte ModernBill News.PHP File Include Vulnerability
Input Validation Error 13086
Yes No
2005-04-10 12:00:00 2009-07-12 12:56:00
- 受影响的程序版本

ModernGigabyte ModernBill 4.3
- 不受影响的程序版本

- 漏洞讨论

ModernBill is prone to a remote file include vulnerability.

The problem presents itself specifically when an attacker passes the location of a remote attacker-specified script through the 'news.php' script.

ModernBill 4.3 and prior versions are vulnerable to this issue.

- 漏洞利用

- 解决方案

The vendor has released ModernBill version 4.3.1 to address this issue. Please contact the vendor to obtain the fixed packages.

