J-Security Center

Title: PHP-Nuke DownloadsPlus Module Arbitrary File Upload Vulnerability

Severity: MODERATE

Description:

DownloadsPlus is a module for the PHP-Nuke content manager.

The DownloadsPlus module of PHP-Nuke is prone to a vulnerability that lets remote attackers upload and execute arbitrary code because it fails to properly sanitize user-supplied input to the 'from=adddownload' action. This issue permits attackers to upload arbitrary files with '.htm', '.html', or '.txt' extensions.

An attacker can leverage this issue to execute arbitrary code on an affected computer with the privileges of the webserver process.

Note that to exploit this issue, the attacker may require valid login credentials.

Affected Products:

  • PHP-Nuke DownloadsPlus Module

References:

Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.