RunCms Debug_Show.php SQL Injection and Information Disclosure Vulnerabilities
BID:23819
Info
RunCms Debug_Show.php SQL Injection and Information Disclosure Vulnerabilities
| Bugtraq ID: | 23819 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-2539 CVE-2007-2538 |
| Remote: | Yes |
| Local: | No |
| Published: | May 04 2007 12:00AM |
| Updated: | Jul 06 2016 02:39PM |
| Credit: | rgod is credited with the discovery of these vulnerabilities. |
| Vulnerable: |
RunCMS RunCMS 1.5.2 RunCMS RunCMS 1.4.1 RunCMS RunCMS 1.2 RunCMS RunCMS 1.1 A RunCMS RunCMS 1.1 RunCMS RunCMS 1.5 RunCMS RunCMS 1.4.1 fixpack b RunCMS RunCMS 1.3.a5 RunCMS RunCMS 1.3.a2 RunCMS RunCMS 1.3.a |
| Not Vulnerable: |
RunCMS RunCMS 1.5.2 Build 20070504 |
Discussion
RunCms Debug_Show.php SQL Injection and Information Disclosure Vulnerabilities
RunCms is prone to an SQL-injection and an information-disclosure vulnerability because the application fails to properly sanitize user-supplied input.
An attacker may be able to exploit these issues to modify the logic of SQL queries. Successful exploits may allow the attacker to compromise the software, retrieve information, or modify data; other consequences are possible as well.
RunCms 1.5.2 and earlier versions are vulnerable; other versions may also be affected.
RunCms is prone to an SQL-injection and an information-disclosure vulnerability because the application fails to properly sanitize user-supplied input.
An attacker may be able to exploit these issues to modify the logic of SQL queries. Successful exploits may allow the attacker to compromise the software, retrieve information, or modify data; other consequences are possible as well.
RunCms 1.5.2 and earlier versions are vulnerable; other versions may also be affected.
Exploit / POC
RunCms Debug_Show.php SQL Injection and Information Disclosure Vulnerabilities
Attackers can use a browser to exploit this issue.
The following exploit code is available:
Attackers can use a browser to exploit this issue.
The following exploit code is available:
Solution / Fix
RunCms Debug_Show.php SQL Injection and Information Disclosure Vulnerabilities
Solution:
The vendor released fixes to address these issues. Please see the references for more information.
RunCMS RunCMS 1.5
RunCMS RunCMS 1.3.a
RunCMS RunCMS 1.3.a5
RunCMS RunCMS 1.3.a2
RunCMS RunCMS 1.4.1 fixpack b
RunCMS RunCMS 1.1 A
RunCMS RunCMS 1.1
RunCMS RunCMS 1.2
RunCMS RunCMS 1.4.1
RunCMS RunCMS 1.5.2
Solution:
The vendor released fixes to address these issues. Please see the references for more information.
RunCMS RunCMS 1.5
-
RunCMS BugFix 20070504
http://www.runcms.org/modules/mydownloads/visit.php?lid=70 -
RunCMS RunCMS 1.5.2 Build 20070504
http://sourceforge.net/project/showfiles.php?group_id=175419&package_i d=201376&release_id=504837
RunCMS RunCMS 1.3.a
-
RunCMS RunCMS 1.5.2 Build 20070504
http://sourceforge.net/project/showfiles.php?group_id=175419&package_i d=201376&release_id=504837
RunCMS RunCMS 1.3.a5
-
RunCMS RunCMS 1.5.2 Build 20070504
http://sourceforge.net/project/showfiles.php?group_id=175419&package_i d=201376&release_id=504837
RunCMS RunCMS 1.3.a2
-
RunCMS RunCMS 1.5.2 Build 20070504
http://sourceforge.net/project/showfiles.php?group_id=175419&package_i d=201376&release_id=504837
RunCMS RunCMS 1.4.1 fixpack b
-
RunCMS RunCMS 1.5.2 Build 20070504
http://sourceforge.net/project/showfiles.php?group_id=175419&package_i d=201376&release_id=504837
RunCMS RunCMS 1.1 A
-
RunCMS RunCMS 1.5.2 Build 20070504
http://sourceforge.net/project/showfiles.php?group_id=175419&package_i d=201376&release_id=504837
RunCMS RunCMS 1.1
-
RunCMS RunCMS 1.5.2 Build 20070504
http://sourceforge.net/project/showfiles.php?group_id=175419&package_i d=201376&release_id=504837
RunCMS RunCMS 1.2
-
RunCMS RunCMS 1.5.2 Build 20070504
http://sourceforge.net/project/showfiles.php?group_id=175419&package_i d=201376&release_id=504837
RunCMS RunCMS 1.4.1
-
RunCMS RunCMS 1.5.2 Build 20070504
http://sourceforge.net/project/showfiles.php?group_id=175419&package_i d=201376&release_id=504837
RunCMS RunCMS 1.5.2
-
RunCMS BugFix 20070504
http://www.runcms.org/modules/mydownloads/visit.php?lid=70 -
RunCMS RunCMS 1.5.2 Build 20070504
http://sourceforge.net/project/showfiles.php?group_id=175419&package_i d=201376&release_id=504837
References
RunCms Debug_Show.php SQL Injection and Information Disclosure Vulnerabilities
References:
References:
- RunCms Homepage (RunCms)
- RunCms <= 1.5.2 debug_show.php sql injection (rgod)