CVE Vulnerabilities

CVE-2011-1584

Published: Jun 08, 2011 | Modified: Apr 27, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The updateFile function in inc/core/class.dc.media.php in the Media Manager in Dotclear before 2.2.3 does not properly restrict pathnames, which allows remote authenticated users to upload and execute arbitrary PHP code via the media_path or media_file parameter. NOTE: some of these details are obtained from third party information.

Affected Software

Name Vendor Start Version End Version
Dotclear Dotclear * 2.2.2 (including)
Dotclear Dotclear 1.2.1 (including) 1.2.1 (including)
Dotclear Dotclear 1.2.2 (including) 1.2.2 (including)
Dotclear Dotclear 1.2.3 (including) 1.2.3 (including)
Dotclear Dotclear 1.2.4 (including) 1.2.4 (including)
Dotclear Dotclear 1.2.5 (including) 1.2.5 (including)
Dotclear Dotclear 1.2.6 (including) 1.2.6 (including)
Dotclear Dotclear 1.2.7 (including) 1.2.7 (including)
Dotclear Dotclear 1.2.8 (including) 1.2.8 (including)
Dotclear Dotclear 2.0 (including) 2.0 (including)
Dotclear Dotclear 2.0-beta_2 (including) 2.0-beta_2 (including)
Dotclear Dotclear 2.0-beta_3 (including) 2.0-beta_3 (including)
Dotclear Dotclear 2.0-beta_4 (including) 2.0-beta_4 (including)
Dotclear Dotclear 2.0-beta_5.2 (including) 2.0-beta_5.2 (including)
Dotclear Dotclear 2.0-beta_5.4 (including) 2.0-beta_5.4 (including)
Dotclear Dotclear 2.0-beta_6 (including) 2.0-beta_6 (including)
Dotclear Dotclear 2.0-beta_7 (including) 2.0-beta_7 (including)
Dotclear Dotclear 2.0-rc1 (including) 2.0-rc1 (including)
Dotclear Dotclear 2.0-rc2 (including) 2.0-rc2 (including)
Dotclear Dotclear 2.0.1 (including) 2.0.1 (including)
Dotclear Dotclear 2.0.2 (including) 2.0.2 (including)
Dotclear Dotclear 2.1 (including) 2.1 (including)
Dotclear Dotclear 2.1.1 (including) 2.1.1 (including)
Dotclear Dotclear 2.1.3 (including) 2.1.3 (including)
Dotclear Dotclear 2.1.4 (including) 2.1.4 (including)
Dotclear Dotclear 2.1.5 (including) 2.1.5 (including)
Dotclear Dotclear 2.1.6 (including) 2.1.6 (including)
Dotclear Dotclear 2.1.7 (including) 2.1.7 (including)
Dotclear Dotclear 2.2 (including) 2.2 (including)
Dotclear Dotclear 2.2.1 (including) 2.2.1 (including)

References