ReciPants SQL Injection and Cross-Site Scripting Vulnerabilities
BID:10250
Info
ReciPants SQL Injection and Cross-Site Scripting Vulnerabilities
| Bugtraq ID: | 10250 |
| Class: | Input Validation Error |
| CVE: |
CVE-2004-2567 CVE-2004-2568 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 30 2004 12:00AM |
| Updated: | Jul 12 2009 04:07AM |
| Credit: | Jon McClintock disclosed these vulnerabilities to the vendor. |
| Vulnerable: |
ReciPants ReciPants 1.1.1 ReciPants ReciPants 1.1 ReciPants ReciPants 1.0.1 ReciPants ReciPants 1.0 |
| Not Vulnerable: |
ReciPants ReciPants 1.2 |
Discussion
ReciPants SQL Injection and Cross-Site Scripting Vulnerabilities
It has been reported that ReciPants is vulnerable to SQL injection and cross-site scripting vulnerabilities. These issues are due to a failure of the application to properly sanitize user-supplied input prior to using the input in database queries. When a query fails, the error message, including the malicious content is displayed to the victim's browser.
These issues may allow an attacker to gain access to sensitive information, corrupt database contents, and steal authentication credentials. Other attacks are also possible.
It has been reported that ReciPants is vulnerable to SQL injection and cross-site scripting vulnerabilities. These issues are due to a failure of the application to properly sanitize user-supplied input prior to using the input in database queries. When a query fails, the error message, including the malicious content is displayed to the victim's browser.
These issues may allow an attacker to gain access to sensitive information, corrupt database contents, and steal authentication credentials. Other attacks are also possible.
Exploit / POC
ReciPants SQL Injection and Cross-Site Scripting Vulnerabilities
No exploit is required.
No exploit is required.
Solution / Fix
ReciPants SQL Injection and Cross-Site Scripting Vulnerabilities
Solution:
The vendor has released an upgrade dealing with this issue.
ReciPants ReciPants 1.0
ReciPants ReciPants 1.0.1
ReciPants ReciPants 1.1
ReciPants ReciPants 1.1.1
Solution:
The vendor has released an upgrade dealing with this issue.
ReciPants ReciPants 1.0
-
ReciPants ReciPants-v1.2.tar.gz
http://recipants.pantsblazing.com/dist/ReciPants-v1.2.tar.gz
ReciPants ReciPants 1.0.1
-
ReciPants ReciPants-v1.2.tar.gz
http://recipants.pantsblazing.com/dist/ReciPants-v1.2.tar.gz
ReciPants ReciPants 1.1
-
ReciPants ReciPants-v1.2.tar.gz
http://recipants.pantsblazing.com/dist/ReciPants-v1.2.tar.gz
ReciPants ReciPants 1.1.1
-
ReciPants ReciPants-v1.2.tar.gz
http://recipants.pantsblazing.com/dist/ReciPants-v1.2.tar.gz
References
ReciPants SQL Injection and Cross-Site Scripting Vulnerabilities
References:
References:
- Vendor Home Page (ReciPants)