phpLDAPadmin < 1.2 Local File Inclusion

medium Nessus Network Monitor Plugin ID 5291

Synopsis

The remote web server is hosting an application that is vulnerable to a local file inclusion attack.

Description

The remote web server is hosting phpLDAPadmin, a web-based LDAP client. The installed version of phpLDAPadmin is earlier than 1.2.0. Such versions are potentially affected by a local file inclusion vulnerability because the application fails to properly sanitize user-supplied input to the 'cmd' parameter of the 'cmd.php' script. An unauthenticated user could exploit this flaw to view arbitrary files or possibly execute arbitrary PHP code on the remote host subject to the privileges of the web server user id.

Solution

Upgrade to phpLDAPadmin 1.2.0 or later.

See Also

http://xorl.wordpress.com/2010/01/06/cve-2009-4427-phpldapadmin-local-file-inclusion

Plugin Details

Severity: Medium

ID: 5291

Family: CGI

Published: 1/7/2010

Updated: 3/6/2019

Nessus ID: 43402

Risk Information

VPR

Risk Factor: Medium

Score: 6.0

CVSS v2

Risk Factor: High

Base Score: 7.5

Temporal Score: 6.2

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

CVSS v3

Risk Factor: Medium

Base Score: 5.9

Temporal Score: 5.5

Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Temporal Vector: CVSS:3.0/E:F/RL:O/RC:X

Vulnerability Information

CPE: cpe:/a:deon_george:phpldapadmin

Patch Publication Date: 7/21/2009

Vulnerability Publication Date: 12/10/2009

Reference Information

CVE: CVE-2009-4427

BID: 37327