| To: | bugtraq@securityfocus.com, full-disclosure@lists.grok.org.uk |
|---|---|
| Subject: | [OPENADS-SA-2007-004] Max Media Manager v0.1.29-rc and v0.3.31-alpha-pr2 vulnerability fixed |
| From: | Matteo Beccati <php@beccati.com> |
| Date: | Fri, 13 Apr 2007 12:16:56 +0200 |
| Delivered-to: | sp-com-lists@consult.net |
| Delivered-to: | bugtraq-list@securepoint.com |
| Delivered-to: | mailing list bugtraq@securityfocus.com |
| Delivered-to: | moderator for bugtraq@securityfocus.com |
| List-help: | <mailto:bugtraq-help@securityfocus.com> |
| List-id: | <bugtraq.list-id.securityfocus.com> |
| List-post: | <mailto:bugtraq@securityfocus.com> |
| List-subscribe: | <mailto:bugtraq-subscribe@securityfocus.com> |
| List-unsubscribe: | <mailto:bugtraq-unsubscribe@securityfocus.com> |
| Mailing-list: | contact bugtraq-help@securityfocus.com; run by ezmlm |
| User-agent: | Mozilla Thunderbird 1.5.0.10 (Windows/20070221) |
======================================================================== Openads security advisory OPENADS-SA-2007-004 ------------------------------------------------------------------------ Advisory ID: OPENADS-SA-2007-004 Date: 2007-Apr-11 Security risk: medium risk Applications affetced: Max Media Manager Versions affected: <= v0.1.29-rc, <= v0.3.31-alpha-pr2 Versions not affected: >= v0.3.31-alpha-pr3 ======================================================================== ======================================================================== Vulnerability: HTTP response splitting ======================================================================== Description ----------- The ck.php (or adclick.php in v0.1.x) script is vulnerable to HTTP response splitting attacks because the "maxdest" parameter is not properly sanitized. The vulnerability DOES NOT affect those running PHP >= 4.4.2 or PHP >= 5.1.2, because the header function blocks this kind of attacks. References ---------- - OPENADS-SA-2007-03 Solution -------- - Those running MMM v0.3.x should upgrade to v0.3.31-alpha-pr3 - Those running MMM v0.1.x should replace adclick.php with the updated file: https://developer.openads.org/browser/branches/max/branches/0.1/adclick.php?rev=5697&format=raw Contact informations ==================== The security contact for Openads can be reached at: <security AT openads DOT org> Best regards -- Matteo Beccati http://www.openads.org http://phpadsnew.com http://phppgads.com |
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | [OPENADS-SA-2007-003] Openads 2.0.11 vulnerability fixed, Matteo Beccati |
|---|---|
| Next by Date: | [MajorSecurity Advisory #44]MailBee WebMail Pro - Cross Site Scripting Issue, admin |
| Previous by Thread: | [OPENADS-SA-2007-003] Openads 2.0.11 vulnerability fixed, Matteo Beccati |
| Next by Thread: | [MajorSecurity Advisory #44]MailBee WebMail Pro - Cross Site Scripting Issue, admin |
| Indexes: | [Date] [Thread] [Top] [All Lists] |