MacWarrior ClipBucket
cpe:2.3:a:clip-bucket:clipbucket:*:*:*:*:*:*:*, +1 more
- <= 5.5.0
A vulnerability exists in ClipBucket versions through 5.5.0, allowing unauthenticated users to upload arbitrary files via the plupload endpoint in photo_uploader.php. This issue arises from inadequate access controls, enabling the upload of executable PHP files that could be executed remotely, resulting in a full server compromise.
Exploitation of this vulnerability allows for unauthorized file uploads, which can be executed as PHP scripts, leading to remote code execution on the server.
To reproduce this vulnerability, send a multipart POST request to the photo_uploader.php file within the upload/actions directory. The request must include a PHP file disguised as an image, such as a web shell, using a standard image file extension. Once uploaded, the PHP file can be accessed through the web server, and if the uploaded payload is a web shell, it can be executed to run commands on the server.
Users are advised to update to ClipBucket version 5.5.2 or later, where this vulnerability has been addressed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.