PHPBB Login Form Multiple Input Validation Vulnerabilities
BID:11716
Info
PHPBB Login Form Multiple Input Validation Vulnerabilities
| Bugtraq ID: | 11716 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 20 2004 12:00AM |
| Updated: | Nov 20 2004 12:00AM |
| Credit: | Discovery of these issues is credited to AnthraX101 and warmth. |
| Vulnerable: |
phpBB Group phpBB 2.0.9 phpBB Group phpBB 2.0.8 a phpBB Group phpBB 2.0.8 phpBB Group phpBB 2.0.7 a phpBB Group phpBB 2.0.7 phpBB Group phpBB 2.0.6 d phpBB Group phpBB 2.0.6 c phpBB Group phpBB 2.0.6 phpBB Group phpBB 2.0.5 phpBB Group phpBB 2.0.4 phpBB Group phpBB 2.0.3 phpBB Group phpBB 2.0.2 phpBB Group phpBB 2.0.1 phpBB Group phpBB 2.0 .0 Gentoo Linux |
| Not Vulnerable: |
phpBB Group phpBB 2.0.10 |
Discussion
PHPBB Login Form Multiple Input Validation Vulnerabilities
Multiple input validation vulnerabilities affect the login form of phpBB. These issues are due to a failure of the application to perform proper sanitization prior to including user-supplied input in dynamically generated content and SQL queries.
An attacker may leverage these issues to execute arbitrary client side script code in the browser of an unsuspecting user and inject arbitrary SQL syntax into SQL queries. This may potentially lead to theft of cookie-based authentication credentials, theft of sensitive information or corruption of data as well as other attacks.
It should be noted that it is possible that one or more of these issues has been reported in a previous BID. This BID will be updated as more information becomes available.
Multiple input validation vulnerabilities affect the login form of phpBB. These issues are due to a failure of the application to perform proper sanitization prior to including user-supplied input in dynamically generated content and SQL queries.
An attacker may leverage these issues to execute arbitrary client side script code in the browser of an unsuspecting user and inject arbitrary SQL syntax into SQL queries. This may potentially lead to theft of cookie-based authentication credentials, theft of sensitive information or corruption of data as well as other attacks.
It should be noted that it is possible that one or more of these issues has been reported in a previous BID. This BID will be updated as more information becomes available.
Exploit / POC
PHPBB Login Form Multiple Input Validation Vulnerabilities
No exploit is required to leverage these issues.
CORE has developed a working commercial exploit for their IMPACT
product. This exploit is not otherwise publicly available or known
to be circulating in the wild.
No exploit is required to leverage these issues.
CORE has developed a working commercial exploit for their IMPACT
product. This exploit is not otherwise publicly available or known
to be circulating in the wild.
Solution / Fix
PHPBB Login Form Multiple Input Validation Vulnerabilities
Solution:
Gentoo has released a security advisory (GLSA 200411-32) and an updated eBuild to address this vulnerability. Gentoo users are advised to execute the following sequence of commands as a superuser in order to apply the updates:
emerge --sync
emerge --ask --oneshot --verbose ">=www-apps/phpbb-2.0.11"
The vendor has provided an upgrade dealing with these issues.
phpBB Group phpBB 2.0 .0
phpBB Group phpBB 2.0.1
phpBB Group phpBB 2.0.2
phpBB Group phpBB 2.0.3
phpBB Group phpBB 2.0.4
phpBB Group phpBB 2.0.5
phpBB Group phpBB 2.0.6 c
phpBB Group phpBB 2.0.6 d
phpBB Group phpBB 2.0.6
phpBB Group phpBB 2.0.7
phpBB Group phpBB 2.0.7 a
phpBB Group phpBB 2.0.8 a
phpBB Group phpBB 2.0.8
phpBB Group phpBB 2.0.9
Solution:
Gentoo has released a security advisory (GLSA 200411-32) and an updated eBuild to address this vulnerability. Gentoo users are advised to execute the following sequence of commands as a superuser in order to apply the updates:
emerge --sync
emerge --ask --oneshot --verbose ">=www-apps/phpbb-2.0.11"
The vendor has provided an upgrade dealing with these issues.
phpBB Group phpBB 2.0 .0
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.1
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.2
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.3
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.4
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.5
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.6 c
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.6 d
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.6
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.7
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.7 a
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.8 a
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.8
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
phpBB Group phpBB 2.0.9
-
phpBB Group phpBB-2.0.10
http://www.phpbb.com/downloads.php
References
PHPBB Login Form Multiple Input Validation Vulnerabilities
References:
References:
- phpBB highlight exploit (CORE Security)
- phpBB Homepage (phpBB)
- phpBB version 2.0.10 Change Log (phpBB)