MyBB inc/functions_post.php domecode() code execution
| mybb-domecode-code-execution (27046) |
Description:
MyBB could allow a remote attacker to execute arbitrary PHP code caused by improper validation by the inc/functions_post.php. A remote attacker could create a specially-crafted username when registering and previewing a post containing the '/slap' string, allowing the attacker to execute arbitrary PHP code on the system.
Consequences:
Gain Access
Remedy:
Upgrade to the latest version of MyBB (1.1.3 or later), available from the MyBB Web site. See References.
References:
- MyBB Web site: MyBB - Home.
- BID-18396: MyBB DomeCode Remote PHP Script Code Injection Vulnerability
- CVE-2006-2908: The domecode function in inc/functions_post.php in MyBulletinBoard (MyBB) 1.1.2, and possibly other versions, allows remote attackers to execute arbitrary PHP code via the username field, which is used in a preg_replace function call with a /e (executable) modifier.
- OSVDB ID: 26216: MyBulletinBoard (MyBB) Registration username Field domecode() Function PHP Code Execution
- SA20371: MyBB "domecode()" PHP Code Execution Vulnerability
- SECTRACK ID: 1016270: MyBB domecode() Input Validation Error Lets Remote Users Execute Arbitrary Code
- VUPEN/ADV-2006-2288: MyBB domecode() Function Username Remote Command Execution Vulnerability
Platforms Affected:
- MyBB MyBB 1.1.2
Reported:
Jun 12, 2006
The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.
For corrections or additions please email xforce@iss.net
