cPanel Passwd Remote SQL Injection Vulnerability
BID:10505
Info
cPanel Passwd Remote SQL Injection Vulnerability
| Bugtraq ID: | 10505 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 09 2004 12:00AM |
| Updated: | Jun 09 2004 12:00AM |
| Credit: | Discovery of this vulnerability is credited to [email protected]. |
| Vulnerable: |
cPanel cPanel 9.1 .0-R85 cPanel cPanel 9.1 cPanel cPanel 9.0 cPanel cPanel 8.0 cPanel cPanel 7.0 cPanel cPanel 6.4.2 .STABLE_48 cPanel cPanel 6.4.2 cPanel cPanel 6.4.1 cPanel cPanel 6.4 cPanel cPanel 6.2 cPanel cPanel 6.0 cPanel cPanel 5.3 cPanel cPanel 5.0 |
| Not Vulnerable: | |
Discussion
cPanel Passwd Remote SQL Injection Vulnerability
cPanel is reportedly affected by a remote SQL injection vulnerability in the passwd script. This issue is due to a failure of the application to properly sanitize user-supplied URI parameter input before using it in an SQL query.
The problem presents itself when malicious SQL statements are passed to the 'passwd' script through URI parameters.
As a result of this a malicious user may influence database queries in order to view or modify sensitive information, potentially compromising the software or the database.
cPanel is reportedly affected by a remote SQL injection vulnerability in the passwd script. This issue is due to a failure of the application to properly sanitize user-supplied URI parameter input before using it in an SQL query.
The problem presents itself when malicious SQL statements are passed to the 'passwd' script through URI parameters.
As a result of this a malicious user may influence database queries in order to view or modify sensitive information, potentially compromising the software or the database.
Exploit / POC
cPanel Passwd Remote SQL Injection Vulnerability
The following example is available:
http://www.example.com:2086/scripts/passwd?password=<>&domain=<>&user=<>
The following example is available:
http://www.example.com:2086/scripts/passwd?password=<>&domain=<>&user=<>
Solution / Fix
cPanel Passwd Remote SQL Injection Vulnerability
Solution:
It is reported that the vendor has addressed this issue. Symantec has not confirmed this. Customers are advised to contact the vendor for further details regarding obtaining and applying fixes.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
It is reported that the vendor has addressed this issue. Symantec has not confirmed this. Customers are advised to contact the vendor for further details regarding obtaining and applying fixes.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
cPanel Passwd Remote SQL Injection Vulnerability
References:
References:
- cPanel Homepage (cPanel)
- Major Cpanel Expliot HTML Injection (Virtual Nova Web Hosting services virtualnova.net
)