Layton Technology HelpBox Multiple SQL Injection Vulnerabilities
BID:10776
Info
Layton Technology HelpBox Multiple SQL Injection Vulnerabilities
| Bugtraq ID: | 10776 |
| Class: | Input Validation Error |
| CVE: |
CVE-2004-2551 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 21 2004 12:00AM |
| Updated: | Jul 21 2004 12:00AM |
| Credit: | Noam Rathaus <[email protected]> disclosed this vulnerability. |
| Vulnerable: |
Layton Technology HelpBox 3.0.1 |
| Not Vulnerable: | |
Discussion
Layton Technology HelpBox Multiple SQL Injection Vulnerabilities
It is reported that HelpBox is susceptible to multiple SQL injection vulnerabilities. This issue is due to improper sanitization of user-supplied data.
These problems present themselves when malicious SQL statements are passed to certain scripts.
Some scripts require administrative privileges to HelpBox. One script reportedly allows exporting any table in the SQL server.
These issues may allow a remote attacker to manipulate query logic, potentially leading to unauthorized access to sensitive information or corruption of database data. SQL injection attacks may also potentially be used to exploit latent vulnerabilities in the underlying database implementation.
HelpBox version 3.0.1 is reported vulnerable to these issues.
It is reported that HelpBox is susceptible to multiple SQL injection vulnerabilities. This issue is due to improper sanitization of user-supplied data.
These problems present themselves when malicious SQL statements are passed to certain scripts.
Some scripts require administrative privileges to HelpBox. One script reportedly allows exporting any table in the SQL server.
These issues may allow a remote attacker to manipulate query logic, potentially leading to unauthorized access to sensitive information or corruption of database data. SQL injection attacks may also potentially be used to exploit latent vulnerabilities in the underlying database implementation.
HelpBox version 3.0.1 is reported vulnerable to these issues.
Exploit / POC
Layton Technology HelpBox Multiple SQL Injection Vulnerabilities
No exploit is required. A proof-of-concept URI was provided:
http://www.example.com/laytonhelpdesk/editcommentenduser.asp?sys_comment_id=1'
No exploit is required. A proof-of-concept URI was provided:
http://www.example.com/laytonhelpdesk/editcommentenduser.asp?sys_comment_id=1'
Solution / Fix
Layton Technology HelpBox Multiple SQL Injection Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Layton Technology HelpBox Multiple SQL Injection Vulnerabilities
References:
References:
- HelpBox Homepage (Layton Technologies)
- HelpBox Multiple SQL Injection Vulnerabilties (SecuriTeam)