PONTON X/P Messenger file upload | CVE-2021-45887
NAME
PONTON X/P Messenger file upload
- Platforms Affected:
PONTON X/P Messenger 3.10.0
PONTON X/P Messenger 3.11.0
PONTON X/P Messenger 3.11.1
PONTON X/P Messenger 3.8.0 - Risk Level:
8 - Exploitability:
Unproven - Consequences:
Gain Access
DESCRIPTION
PONTON X/P Messenger could allow a remote authenticated attacker to upload arbitrary files, caused by a zip slip vulnerability. By uploading a specially-crafted ZIP file containing “dot dot” sequences (/../), a remote attacker could exploit this vulnerability to cause arbitrary file writes, allowing the attacker to execute arbitrary code on the vulnerable system.
CVSS 3.0 Information
- Privileges Required: Low
- User Interaction: None
- Scope: Unchanged
- Access Vector: Adjacent Network
- Access Complexity: Low
- Confidentiality Impact: High
- Integrity Impact: High
- Availability Impact: High
- Remediation Level: Official Fix
MITIGATION
Upgrade to the latest version of PONTON X/P Messenger (3.11.2 or later), available from the PONTON Web site. See References.
- Reference Link:
https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2021-077.txt - Reference Link:
https://ponton.de/downloads/xp/
If you like the site, please consider joining the telegram channel and supporting us on Patreon using the button below.