Skip to content

Instantly share code, notes, and snippets.

@pentestrox
Last active January 17, 2026 06:29
Show Gist options
  • Select an option

  • Save pentestrox/efc32bfe86d14897e5ff521ac8f89185 to your computer and use it in GitHub Desktop.

Select an option

Save pentestrox/efc32bfe86d14897e5ff521ac8f89185 to your computer and use it in GitHub Desktop.

CVE-2025-65818 — Unauthenticated File Upload in Dovestones AD Phonebook

Summary

An authentication and authorization bypass vulnerability exists in Dovestones Software AD Phonebook versions prior to 4.0.0.11. The application exposes an administrative file upload endpoint that can be accessed by unauthenticated remote attackers.


Vulnerability Details

Vulnerability Type

Incorrect Access Control

Description

In Dovestones Software AD Phonebook before version 4.0.0.11, the /ADPhonebook/Admin/UploadLogo endpoint fails to enforce authentication and authorization checks before processing file upload requests. As a result, an unauthenticated attacker can issue a crafted HTTP POST request to this endpoint without a valid session cookie or authentication token and upload or overwrite image files on the server.

This vulnerability demonstrates a failure in backend access control enforcement for administrative functionality.

Affected Products

  • Product: Dovestones Software AD Phonebook
  • Versions Affected: All versions prior to 4.0.0.11
  • Tested Version: 4.0.0.10
  • Fixed Version: 4.0.0.11

Affected Component

  • /ADPhonebook/Admin/UploadLogo endpoint
  • File upload handler
  • Authentication and authorization middleware

Impact

Successful exploitation allows unauthorized file upload or modification, which may lead to:

  • Overwriting legitimate company logo files
  • Content spoofing or visual defacement

Attack Vector

  • Attack Type: Remote
  • Authentication Required: No
  • Exploitation Method: Crafted HTTP POST request to the vulnerable endpoint
  • Network access to the application’s administrative interface is sufficient

Mitigation / Remediation

Upgrade to Dovestones Software AD Phonebook version 4.0.0.11 or later, which includes proper authentication and authorization checks for the affected endpoint.


Discovery

  • Discovered by: Fedrick R. Sequeira (Accenture)
  • Discovery Date: October 18, 2024

References

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment