Vote Pro v.4.0 Remote Command Execution Security Vulnerability

Description
Input passed to the "poll_id" parameter in "pool_frame.php" is not properly sanitised, before it is written to the web-accessible chat_log.php file. This can be exploited to execute arbitrary shell commands.

Confirmed in version 4.0. Other versions may also be affected.

Impact
This issue may allow a remote attacker to execute arbitrary commands in the context of the web server that is hosting the vulnerable software.

References
Original Advisory
Product Homepage

View entire list of over 400 known Web Application Vulnerabilities and the specific technologies which they target. See Web Vulnerabilities in popular applications such as: WordPress, Tiki Wiki, PHPNuke, PHPMyAdmin, phpBB, Mambo, PHP-Fusion, Mantis, Invision Power Board

Get latest new web vulnerabilities via RSS