TML CMS Multiple Input Validation Vulnerabilities
BID:15876
Info
TML CMS Multiple Input Validation Vulnerabilities
| Bugtraq ID: | 15876 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 15 2005 12:00AM |
| Updated: | Dec 15 2005 12:00AM |
| Credit: | Discovered by X1ngBox <[email protected]>. |
| Vulnerable: |
TML TML 0.5 |
| Not Vulnerable: | |
Discussion
TML CMS Multiple Input Validation Vulnerabilities
TML CMS is prone to multiple input validation vulnerabilities.
Successful exploitation of these vulnerabilities could result in a compromise of the application, disclosure or modification of data, the theft of cookie-based authentication credentials. They may also permit an attacker to exploit vulnerabilities in the underlying database implementation as well as other attacks.
TML CMS 0.5 is reportedly affected. Other versions may be vulnerable as well.
TML CMS is prone to multiple input validation vulnerabilities.
Successful exploitation of these vulnerabilities could result in a compromise of the application, disclosure or modification of data, the theft of cookie-based authentication credentials. They may also permit an attacker to exploit vulnerabilities in the underlying database implementation as well as other attacks.
TML CMS 0.5 is reportedly affected. Other versions may be vulnerable as well.
Exploit / POC
TML CMS Multiple Input Validation Vulnerabilities
No exploit is required.
Proof of concept URI are available:
http://www.example.com/[ztml]/index.php?type=tpl&form=<h1> x1ng <h1/>
http://www.example.com/[ztml]/index.php?doc=unote&id=[sql]
No exploit is required.
Proof of concept URI are available:
http://www.example.com/[ztml]/index.php?type=tpl&form=<h1> x1ng <h1/>
http://www.example.com/[ztml]/index.php?doc=unote&id=[sql]
Solution / Fix
TML CMS Multiple Input Validation Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
TML CMS Multiple Input Validation Vulnerabilities
References:
References:
- cross site script and sql injection (X1ngBox)
- TML Product Page (zTML.com)