BroadBoard Message Board Multiple SQL Injection Vulnerabilities
BID:11250
Info
BroadBoard Message Board Multiple SQL Injection Vulnerabilities
| Bugtraq ID: | 11250 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 27 2004 12:00AM |
| Updated: | Sep 27 2004 12:00AM |
| Credit: | Discovery of these issue is credited to "pigrelax" <[email protected]>. |
| Vulnerable: |
BroadBoard Instant ASP Message Board |
| Not Vulnerable: | |
Discussion
BroadBoard Message Board Multiple SQL Injection Vulnerabilities
Reportedly BroadBoard Message Board is affected by multiple SQL injection vulnerabilities. These issues are due to a failure of the application to properly sanitize user supplied URI input prior to using it in an SQL query.
An attacker may exploit these issues to manipulate SQL queries, potentially revealing or corrupting sensitive database data. These issues may also facilitate attacks against the underlying database software.
Reportedly BroadBoard Message Board is affected by multiple SQL injection vulnerabilities. These issues are due to a failure of the application to properly sanitize user supplied URI input prior to using it in an SQL query.
An attacker may exploit these issues to manipulate SQL queries, potentially revealing or corrupting sensitive database data. These issues may also facilitate attacks against the underlying database software.
Exploit / POC
BroadBoard Message Board Multiple SQL Injection Vulnerabilities
No exploit is required to leverage this issue. The following proof of concepts have been provided:
http://broadboard/forum/search.asp?archives=1&action=1&keywords=['SQLcode]&method=1&method=1&body=1&subject=1&board=1&results=1
http://broadboard/forum/profile.asp?handle=['SQL code]
No exploit is required to leverage this issue. The following proof of concepts have been provided:
http://broadboard/forum/search.asp?archives=1&action=1&keywords=['SQLcode]&method=1&method=1&body=1&subject=1&board=1&results=1
http://broadboard/forum/profile.asp?handle=['SQL code]
Solution / Fix
BroadBoard Message Board Multiple SQL Injection Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
BroadBoard Message Board Multiple SQL Injection Vulnerabilities
References:
References:
- Instant ASP Message Board Home Page (BroadBoard)