RCE, Information Disclosure and XSS Flaws Found in PayPal

A security expert has managed to identify three vulnerabilities on paypal-marketing.com, the website used by the payment processor for the PayPal Partner Program.

Behrouz Sadeghipour has found and reported a cross-site scripting (XSS) issue, a remote code execution flaw and an information disclosure vulnerability.

Initially, the researcher found the XSS flaw, which he reported to PayPal’s security team on March 19. The XSS was addressed on April 9.

One day after the XSS was fixed, Sadeghipour identified an information disclosure issue, which he later leveraged for remote code execution. The expert said he was looking for an SQL Injection bug, but he found an RCE instead.

To demonstrate the existence of the RCE to PayPal, he sent the company’s security team three links showing that he could retrieve the Process ID (PID), the script owner’s Group ID (GID) and the script owner’s User ID (UID) by replacing a parameter in the request with PHP commands.

By April 11, PayPal had addressed the vulnerability. The company has promised to reward the researcher in the next payment cycle.

Sadeghipour highlights that the RCE he has found is a remote code execution, not a remote command execution bug. This vulnerability allows an attacker to run PHP functions. The flaw produces the same sort of results, but by leveraging PHP.

Check out the proof-of-concept video for the PayPal Partner Program vulnerabilities. Additional technical details are available on Behrouz Sadeghipour's blog.

Source: Softpedia

Post a Comment Blogger

  1. Doesn't work on centos 6.4 x86_64

    /usr/sbin/airmon-ng: line 338: /sys/class/ieee80211/phy0/add_iface: No such file or directory

  2. im a security auditer at the same place as him and at that almost exact time i had found a flaw in there games.yahoo.net server and gained access to there games admin portal via jboss and could inturn control all that side i also turned mine in for bounty. Trig

  3. This variable has been able to change the whole chess game, so this plan a sieve, should play a role in some of the pieces turned to let the birth of Leaf River map dormant forever, and this is fate, The North Face Jacket Sale North Face Sale Venus Dragon monks only use this clever way to comfort yourself, do not blame him for that half a foot into the coffin of the old man, do not blame Tantric, to blame blame leaf River map turned out to be too strong a word strong.

    Remember the day we do it here? The conflict occurred a few days ago here remember, Leaf River map recalls, Junyi Feng North Face Sale Uk scratched his head, shy Road remember. How could you not remember that elicit Fan Shuo storm it, Fan Shuo defeat at the hands of Leaf River map, not innocent, perhaps a few years, because he would have been defeated in the hands of Leaf River map proud. The Tibet line, gain a lot. Leaf River map like this can also be a.

    Force strength of the top five anti-God ask the younger generation who are able to contend with, even the older generation of masters fear can not The North Face Sale North Face Jacket Sale find a few. If because of North Face Sale Uk this strength will be arrogant, that figure is not the Leaf River Leaf River map, dormant for years in the Kunlun Mountains, hidden strength, as is an ordinary program would have been unthinkable under single-handedly kill the Kunlun.

  4. Jolly maple back and Kunlun, Leaf River map is to use the strength to speak, completely sealed Presbyterian gang old man's mouth. Potala Palace will force topped, killing one person under the Kunlun, Leaf River map shoulders to bear too much glory and pressure, but in front of Jolly maple or slovenly like to joke that the big brother. Remove the North Face Sale Uk face of some things, North Face Sale no matter how tough even have to pretend nothing had happened.

    Jun Yi Feng Tang Peng understand newfound Leaf River map but some of his fur to teach it. Yi Feng, to The North Face Sale tell him you know. Figure calm Leaf River Road, Tang Peng listened noontime. Jun Yi Feng was explained, the latter exclaimed understand the situation: the original pit mine, and what you will it move? I knew that to ask you. Tang Peng want, all maple Jolly taught him, there is no point everything he knows. 'd Let Tang Peng feel flattered.

    Weekdays always talkative and hatred Leaf River map surprisingly no Tang Peng, silent. After the can to my place to Tang to me, North Face Sale although last in the Kunlun planted in your hands, but I'm convinced Tang Peng. Starting today, you are my friend Tang Peng, even though I am a little climb, or really put you as a brother is my role model. Determined after the Tang Peng say these words slowly, as the master of the house's only son Tang.

  5. Model? Leaf River map Momobizai for Tang Peng, then laughing, but there are still people will see him as an The North Face Sale example, the master heard, must be very pleased. Commitment to the Tang Peng, Leaf River map did not answer. Tang Peng mind as long as there is in this position, Leaf River map to find him at any time is not a problem. Everyone has to pursue, against fate arrangements can only fight. One who wants to get much, much will have to pay a lot.

    How many lives could have two years to wait for two years, I take it lightly, Kujinganlai. Volume I end up feeling a little North Face Sale refreshing, after all, my debut, North Face Sale the first step is finally over. The Tibet line is I want to come out in June temporarily, a bit hasty. 20, 000 words can be contracted purely brethren friendship support, many of my friends say that my writing is good, really let me have moved a while, over the previous North.

    Martial arts drama, the classification of urban life, write down must be nondescript. Beijing story, we need also a lot of North Face Jacket Sale series characters, outline and characters arrangements I have not arranged, leave for two days. The fourth volume of the first volume and different style and you will see a transformation even more insolent Hetu, in Beijing, the two factions as well as the key figure in the fight weeks old, Deng Zhao around Thailand.

  6. He harmonious discord tube future again, you know. Volume IV Chapter One Moment in Peking Capital Airport return. A hanging G sedans in Shanghai A rapidly approaching, nice flick for people waiting room of much praise. North Face Sale Parking the car down an approximately three-year-old middle-aged man, his eyes cold and windy with a military-specific momentum. Went to the waiting room, pick a place to sit near the corner, pulled out a box of specially lit.

    Others overawed by this posture, the license plate from the arrogant fool's move North Face Jacket Sale into this North Face Jacket Sale middle-aged man, who quickly evacuated within a few meters next to the sound of conversation suddenly a lot of small, lively markets like the lounges because of this the arrival of uninvited guests seems to have deserted. Middle-aged men do not pay attention to those who are not related to his or thing, in his opinion.

    Young age can climb the Division Director, upside is still very large, there is no strong background and a strong network North Face Sale Uk of people, there is now able to get to the location, middle-aged man wondered, should not pick a fight with that person good relationship, if the other party is a Gangster relatives or promising talent above, North Face Sale Uk that they are not on the addition of a road. Cigarette burn fingers, middle-aged man hastily.

  7. Hi, I followed your guide and was able to successfully install aircrack but whenever, I try to start up airmon-ng, i get "line 338: /sys/class/ieee80211/phy0/add_iface: No such file or directory." I've tried googling this and trying the various fixes I found through it but none of them are helping. I thought maybe the NIC was bad but I was able to use it successfully when I booted the laptop in Kali.