5
CVSSv2

CVE-2011-4810

Published: 14/12/2011 Updated: 10/02/2012
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Multiple directory traversal vulnerabilities in WHMCompleteSolution (WHMCS) 3.x and 4.x allow remote malicious users to read arbitrary files via the templatefile parameter to (1) submitticket.php and (2) downloads.php, and (3) the report parameter to admin/reports.php.

Vulnerable Product Search on Vulmon Subscribe to Product

whmcs whmcompletesolution 4.1.2

whmcs whmcompletesolution 4.2.1

whmcs whmcompletesolution 4.3.1

whmcs whmcompletesolution 4.4.1

whmcs whmcompletesolution 4.5.0

whmcs whmcompletesolution 4.0.0

whmcs whmcompletesolution 4.0.1

whmcs whmcompletesolution 4.0.2

whmcs whmcompletesolution 4.1.0

whmcs whmcompletesolution 4.5.1

whmcs whmcompletesolution 4.5.2

whmcs whmcompletesolution 3.0.0

whmcs whmcompletesolution 4.2.0

whmcs whmcompletesolution 4.3.0

whmcs whmcompletesolution 4.1.1

whmcs whmcompletesolution 4.4.0

whmcs whmcompletesolution 4.4.2

Exploits

$b0x# WHMCS ( WHMCompleteSolution ) 3x / 4x Multiple Vulnerability ! $b0x# ZxH-Labs $b0x# 1st-NOV-11 $b0x# WwwSec4evercoM $b0x# WH-03 On Windows IIS 60 ======================================================== b0x@1337b0x:/b0x/Exploits/WebAPP# whoami ZxH-Labs | WwwSec4evercoM b0x@1337b0x:/b0x/Exploits/WebAPP# cat WH-03XPL EXPL Type ...