Invision Power Board Index.PHP Post Action SQL Injection Vulnerability
BID:11703
Info
Invision Power Board Index.PHP Post Action SQL Injection Vulnerability
| Bugtraq ID: | 11703 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 18 2004 12:00AM |
| Updated: | Nov 18 2004 12:00AM |
| Credit: | This issue was discovered by the automated MaxPatrol utility. |
| Vulnerable: |
Invision Power Services Invision Board 2.0.2 Invision Power Services Invision Board 2.0.1 Invision Power Services Invision Board 2.0 |
| Not Vulnerable: | |
Discussion
Invision Power Board Index.PHP Post Action SQL Injection Vulnerability
A remote SQL injection vulnerability affects Inivision Power Board. This issue is due to a failure of the application to properly validate user-supplied input prior to using it in an SQL query.
An attacker may leverage this issue to manipulate SQL query strings and potentially carry out arbitrary database queries. This may facilitate the disclosure or corruption of sensitive database information.
A remote SQL injection vulnerability affects Inivision Power Board. This issue is due to a failure of the application to properly validate user-supplied input prior to using it in an SQL query.
An attacker may leverage this issue to manipulate SQL query strings and potentially carry out arbitrary database queries. This may facilitate the disclosure or corruption of sensitive database information.
Exploit / POC
Invision Power Board Index.PHP Post Action SQL Injection Vulnerability
No exploit is required to leverage this issue. The following two proof of concepts have been provided:
http://www.example.com/forum/index.php?act=Post&CODE=02&f=2&t=1&qpid=1[sql_injection]
No exploit is required to leverage this issue. The following two proof of concepts have been provided:
http://www.example.com/forum/index.php?act=Post&CODE=02&f=2&t=1&qpid=1[sql_injection]
Solution / Fix
Invision Power Board Index.PHP Post Action SQL Injection Vulnerability
Solution:
It has been reported that the vendor has supplied a patch dealing with this issue, although this is not confirmed. Users with vulnerable versions of the software are advised to contact the vendor for more information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
It has been reported that the vendor has supplied a patch dealing with this issue, although this is not confirmed. Users with vulnerable versions of the software are advised to contact the vendor for more information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Invision Power Board Index.PHP Post Action SQL Injection Vulnerability
References:
References:
- Invision Board Homepage (Invision Power Services)
- [MaxPatrol] SQL-injection in Invision Power Board 2.x (Alexander Anisimov
)