PHP Upload Center stores password hashes under the web root with insufficient access control, which allows remote attackers to download each password hash via a direct request for the upload/users/[USERNAME] file.
Link | Tags |
---|---|
http://www.blogcu.com/Liz0ziM/317250/ | url repurposed |
http://www.securityfocus.com/archive/1/427215/100/0/threaded | mailing list |
http://biyosecurity.be/bugs/phpuploadcenter2.txt | exploit |
http://www.osvdb.org/23627 | vdb entry |
http://www.scripts-by.net/PHP/File-Manipulation/php-upload-center.html | url repurposed |