SOPlanning File Upload Bypass Vulnerability Allowing Remote Code Execution

Vulnerability

A file upload bypass vulnerability has been identified in SOPlanning version 1.53.00, specifically within the file upload process handled by 'www/process/upload.php'. This vulnerability allows remote attackers to circumvent upload restrictions and potentially execute arbitrary code by uploading malicious files, such as those disguised with certain file extensions that are not properly filtered.

Impact

Exploitation of this vulnerability allows for arbitrary file uploads, which can lead to remote code execution on the server.

Reproduction

The vulnerability can be reproduced by uploading a file with a '.phtml' extension through the application's file upload feature. The upload will bypass the application's blacklist of disallowed file types, as the '.phtml' extension is not properly blocked. Once uploaded, the file can be executed on the server, leading to remote code execution. This vulnerability can also be exploited by using alternative file extensions such as '.pht', '.phar', or '.php3', which can achieve the same result.

Remediation

Users are advised to update to the latest version of SOPlanning, where this vulnerability has been patched.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.6
remediation
0.0
relevance
0.0
threat
6.4
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.