Description
Next Click Ventures RealtyScript 4.0.2 fails to properly sanitize file uploads, allowing attackers to store malicious scripts through the file POST parameter in admin/tools.php. Attackers can upload files containing JavaScript code that executes in the context of admin/tools.php when accessed by other users.
Problem types
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Product status
References
www.exploit-db.com/exploits/38496 (ExploitDB-38496)
www.zeroscience.mk/en/vulnerabilities/ZSL-2015-5269.php (Zero Science Lab Disclosure)
www.vulncheck.com/...ite-scripting-via-file-upload-parameter (VulnCheck Advisory: RealtyScript 4.0.2 Stored Cross-Site Scripting via File Upload Parameter)