6.5
CVSSv2

CVE-2009-1677

Published: 18/05/2009 Updated: 29/09/2017
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 655
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Multiple static code injection vulnerabilities in the saveFeed function in rss/feedcreator.class.php in Bitweaver 2.6 and previous versions allow (1) remote authenticated users to inject arbitrary PHP code into files by placing PHP sequences into the account's "display name" setting and then invoking boards/boards_rss.php, and might allow (2) remote malicious users to inject arbitrary PHP code into files via the HTTP Host header in a request to boards/boards_rss.php.

Vulnerable Product Search on Vulmon Subscribe to Product

bitweaver bitweaver 1.2.1

bitweaver bitweaver 1.1.1_beta

bitweaver bitweaver

bitweaver bitweaver 1.1

bitweaver bitweaver 2.5

bitweaver bitweaver 2.0.2

bitweaver bitweaver 2.0.0

bitweaver bitweaver 1.3.1

bitweaver bitweaver 1.3

Exploits

<?php /* Bitweaver <= 26 /boards/boards_rssphp / saveFeed() remote code execution exploit by Nine:Situations:Group::bookoo phpini independent site: retrogodaltervistaorg/ software site: wwwbitweaverorg/ You need an user account and you need to change your "display name" in: ...