积极预防 及时发现
快速响应 力保恢复
PostNuke 存在路径揭发缺陷 (Other,缺陷)
发布时间:2003-03-31 信息来源:管理员

涉及程序: PostNuke 0.7.2.3-Phoenix/0.7.2.2/0.7.2.1版 描述: PostNuke 存在路径揭发缺陷 详细: PostNuke的Members_List模块存在一个缺陷,允许攻击者确定内容管理系统的物理路径。攻击者利用该缺陷能确定WEB root目录的全称路径和其他信息,比如数据库名称。攻击者使用下列格式的URL,并改变字符串“1234”能使用该缺陷: http://www.target.com/modules.php?op=modload&name=Members_List&file=index&letter=All&sortby=uname1234 使用下列格式的URL能引发PostNuke 0.7.2.2/0.7.2.1版中路径泄露缺陷: http://www.target.com/modules.php?op=modload&name=Stats&file= http://www.target.com/modules.php?op=modload&name=Members_List&file=index&letter=Svi&sortby=uname1234 (改变字符串“1234”) 攻击方法: 示例代码: http://www.target.com/modules.php?op=modload&name=Members_List&file=index&letter=All&sortby=uname1234 解决方案: 目前厂商未公布该缺陷补丁,请用户及时关注厂商站点: http://www.postnuke.com/ 临时解决方案: ·更改Member_List模块使用权限,仅仅允许管理员使用 ·停止使用Member_List模块