LinPHA Session Cookie SQL Injection Vulnerability
BID:10827
Info
LinPHA Session Cookie SQL Injection Vulnerability
| Bugtraq ID: | 10827 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 29 2004 12:00AM |
| Updated: | Jul 29 2004 12:00AM |
| Credit: | Ruben Molina <[email protected]> disclosed this vulnerability. |
| Vulnerable: |
LinPHA LinPHA 0.9.4 LinPHA LinPHA 0.9.3 LinPHA LinPHA 0.9.2 LinPHA LinPHA 0.9.1 LinPHA LinPHA 0.9 .0 |
| Not Vulnerable: | |
Discussion
LinPHA Session Cookie SQL Injection Vulnerability
LinPHA is reported to contain an SQL injection vulnerability in its session cookie handling code. This issue is due to a failure of the application to properly sanitize user-supplied input before using it in an SQL query.
Successful exploitation could result in compromise of the application, disclosure or modification of data or may permit an attacker to exploit vulnerabilities in the underlying database implementation. It is demonstrated that an attacker may exploit this vulnerability in order to gain administrative access to the application.
Version 0.9.4 has been reported susceptible to this vulnerability. Prior versions may also be affected.
LinPHA is reported to contain an SQL injection vulnerability in its session cookie handling code. This issue is due to a failure of the application to properly sanitize user-supplied input before using it in an SQL query.
Successful exploitation could result in compromise of the application, disclosure or modification of data or may permit an attacker to exploit vulnerabilities in the underlying database implementation. It is demonstrated that an attacker may exploit this vulnerability in order to gain administrative access to the application.
Version 0.9.4 has been reported susceptible to this vulnerability. Prior versions may also be affected.
Exploit / POC
LinPHA Session Cookie SQL Injection Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
LinPHA Session Cookie SQL Injection Vulnerability
Solution:
The vendor has fixed this issue in the CVS version of the software.
Solution:
The vendor has fixed this issue in the CVS version of the software.
References
LinPHA Session Cookie SQL Injection Vulnerability
References:
References:
- LinPHA Home Page (LinPHA)
- Linpha 0.9.4: authentication bypass (Ruben Molina
)