BugPort Attached File Handling Unspecified Issue

high Nessus Plugin ID 15470

Synopsis

A remote web application is vulnerable to an unspecified flaw.

Description

The remote host seems to be running BugPort, an open source web-based system to manage tasks and defects throughout the software development process.

This version of BugPort contains an unspecified attachment handling flaw.

Solution

Update to version 1.134 or newer

Plugin Details

Severity: High

ID: 15470

File Name: bugport_attachment_handling_flaw.nasl

Version: 1.14

Type: remote

Family: CGI abuses

Published: 10/13/2004

Updated: 1/19/2021

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: High

Base Score: 7.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Information

Required KB Items: www/PHP

Excluded KB Items: Settings/disable_cgi_scanning

Vulnerability Publication Date: 10/5/2004