AlstraSoft Video Share Enterprise Multiple Input Validation Vulnerabilities
BID:25019
Info
AlstraSoft Video Share Enterprise Multiple Input Validation Vulnerabilities
| Bugtraq ID: | 25019 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 23 2007 12:00AM |
| Updated: | Feb 12 2010 10:12AM |
| Credit: | Lostmon is credited with the discovery of these vulnerabilities. |
| Vulnerable: |
AlstraSoft Video Sharing Enterprise 4.3 AlstraSoft Video Sharing Enterprise 4.2 AlstraSoft Videa Sharing Enterprise 4.1 |
| Not Vulnerable: | |
Discussion
AlstraSoft Video Share Enterprise Multiple Input Validation Vulnerabilities
AlstraSoft Video Share Enterprise is affected by multiple input-validation vulnerabilities. These issues include multiple cross-site scripting vulnerabilities and multiple SQL-injection vulnerabilities.
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, execute arbitrary script code in the context of the webserver process, access or modify data, or exploit latent vulnerabilities in the underlying database.
AlstraSoft Video Share Enterprise is affected by multiple input-validation vulnerabilities. These issues include multiple cross-site scripting vulnerabilities and multiple SQL-injection vulnerabilities.
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, execute arbitrary script code in the context of the webserver process, access or modify data, or exploit latent vulnerabilities in the underlying database.
Exploit / POC
AlstraSoft Video Share Enterprise Multiple Input Validation Vulnerabilities
To exploit the cross-site scripting issues, an attacker must entice an unsuspecting victim into following a malicious URI. The attacker can use a browser to exploit the SQL-injection issue.
The following example URI is available:
http://www.example.com/ugroups.php?UID=2+union+select+1%2cversion%28%29%2cnull%2cnull%2c5%2c6%2cnull%2c8%2c9%2c10%2c11%2c12%2c13%2c14%2c15%2f*
The following proofs of concept have also been provided:
To exploit the cross-site scripting issues, an attacker must entice an unsuspecting victim into following a malicious URI. The attacker can use a browser to exploit the SQL-injection issue.
The following example URI is available:
http://www.example.com/ugroups.php?UID=2+union+select+1%2cversion%28%29%2cnull%2cnull%2c5%2c6%2cnull%2c8%2c9%2c10%2c11%2c12%2c13%2c14%2c15%2f*
The following proofs of concept have also been provided:
Solution / Fix
AlstraSoft Video Share Enterprise Multiple Input Validation Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
AlstraSoft Video Share Enterprise Multiple Input Validation Vulnerabilities
References:
References:
- AlstraSoft Multiple products multiple Vulnerabilities (Lostmon)
- AlstraSoft Video Share Enterprise Homepage (AlstraSoft)