Comersus Cart SQL Injection Vulnerability
BID:10824
Info
Comersus Cart SQL Injection Vulnerability
| Bugtraq ID: | 10824 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 29 2004 12:00AM |
| Updated: | Jul 29 2004 12:00AM |
| Credit: | Discovery of this vulnerability is credited to [email protected]. |
| Vulnerable: |
Comersus Open Technologies Comersus Cart 5.0 98 Comersus Open Technologies Comersus Cart 5.0 9 |
| Not Vulnerable: | |
Discussion
Comersus Cart SQL Injection Vulnerability
Comersus Cart is reportedly affected by a remote SQL injection vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied URI parameter input before using it in an SQL query.
The problem presents itself when malicious SQL statements are passed as a value for the username field when authenticating to the application.
As a result of this a malicious user may influence database queries in order to view or modify sensitive information, potentially compromising the software or the database.
Comersus Cart is reportedly affected by a remote SQL injection vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied URI parameter input before using it in an SQL query.
The problem presents itself when malicious SQL statements are passed as a value for the username field when authenticating to the application.
As a result of this a malicious user may influence database queries in order to view or modify sensitive information, potentially compromising the software or the database.
Exploit / POC
Comersus Cart SQL Injection Vulnerability
The following example is available:
log into server with "username' OR 'hack'='hack"
The following example is available:
log into server with "username' OR 'hack'='hack"
Solution / Fix
Comersus Cart SQL Injection Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Comersus Cart SQL Injection Vulnerability
References:
References:
- Comersus Cart Homepage (Comersus Open Technologies)