Edgewall Software Trac Search Module SQL Injection Vulnerability
BID:15720
Info
Edgewall Software Trac Search Module SQL Injection Vulnerability
| Bugtraq ID: | 15720 |
| Class: | Input Validation Error |
| CVE: |
CVE-2005-4065 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 05 2005 12:00AM |
| Updated: | Feb 07 2006 08:53PM |
| Credit: | The vendor disclosed this vulnerability. |
| Vulnerable: |
Edgewall Software Trac 0.9.1 Edgewall Software Trac 0.9 Edgewall Software Trac 0.8.4 Edgewall Software Trac 0.8.3 Edgewall Software Trac 0.8.1 Edgewall Software Trac 0.7.1 Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 |
| Not Vulnerable: |
Edgewall Software Trac 0.9.2 Edgewall Software Trac 0.9.1 |
Discussion
Edgewall Software Trac Search Module SQL Injection Vulnerability
Trac is prone to an SQL injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.
Successful exploitation could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
Trac is prone to an SQL injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.
Successful exploitation could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
Exploit / POC
Edgewall Software Trac Search Module SQL Injection Vulnerability
No exploit is required.
The following proof of concept URI is available:
http://www.example.com/trac/search?q=test\'
No exploit is required.
The following proof of concept URI is available:
http://www.example.com/trac/search?q=test\'
Solution / Fix
Edgewall Software Trac Search Module SQL Injection Vulnerability
Solution:
Please see the referenced advisories for further information:
- Debian Linux has released security advisory DSA 951-1 to address this issue.
- Debian Linux has released updated security advisory DSA 951-2 addressing this issue.
The vendor has released version 0.9.2 addressing this issue:
Edgewall Software Trac 0.7.1
Edgewall Software Trac 0.8.1
Edgewall Software Trac 0.8.3
Edgewall Software Trac 0.8.4
Edgewall Software Trac 0.9
Edgewall Software Trac 0.9.1
Solution:
Please see the referenced advisories for further information:
- Debian Linux has released security advisory DSA 951-1 to address this issue.
- Debian Linux has released updated security advisory DSA 951-2 addressing this issue.
The vendor has released version 0.9.2 addressing this issue:
Edgewall Software Trac 0.7.1
-
Edgewall Software trac-0.9.1.tar.gz
ftp://ftp.edgewall.com/pub/trac/trac-0.9.1.tar.gz -
Edgewall Software trac-0.9.2.tar.gz
http://ftp.edgewall.com/pub/trac/trac-0.9.2.tar.gz
Edgewall Software Trac 0.8.1
-
Debian trac_0.8.1-3sarge4_all.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/t/trac/trac_0.8.1-3sarge4 _all.deb -
Edgewall Software trac-0.9.1.tar.gz
ftp://ftp.edgewall.com/pub/trac/trac-0.9.1.tar.gz -
Edgewall Software trac-0.9.2.tar.gz
http://ftp.edgewall.com/pub/trac/trac-0.9.2.tar.gz
Edgewall Software Trac 0.8.3
-
Edgewall Software trac-0.9.1.tar.gz
ftp://ftp.edgewall.com/pub/trac/trac-0.9.1.tar.gz -
Edgewall Software trac-0.9.2.tar.gz
http://ftp.edgewall.com/pub/trac/trac-0.9.2.tar.gz
Edgewall Software Trac 0.8.4
-
Edgewall Software trac-0.9.1.tar.gz
ftp://ftp.edgewall.com/pub/trac/trac-0.9.1.tar.gz -
Edgewall Software trac-0.9.2.tar.gz
http://ftp.edgewall.com/pub/trac/trac-0.9.2.tar.gz
Edgewall Software Trac 0.9
-
Edgewall Software trac-0.9.1.tar.gz
ftp://ftp.edgewall.com/pub/trac/trac-0.9.1.tar.gz -
Edgewall Software trac-0.9.2.tar.gz
http://ftp.edgewall.com/pub/trac/trac-0.9.2.tar.gz
Edgewall Software Trac 0.9.1
-
Edgewall Software trac-0.9.2.tar.gz
http://ftp.edgewall.com/pub/trac/trac-0.9.2.tar.gz
References
Edgewall Software Trac Search Module SQL Injection Vulnerability
References:
References:
- [DSA 951-1] New trac packages fix SQL injection and cross-site scripting (Debian)
- [DSA 951-2] New trac packages fix SQL injection and cross-site scripting (Debian)
- Trac (Edgewall Software)
- Trac Changelog (Edgewall Software)