Ripe Website Manager Multiple SQL and HTML Injection Vulnerabilities
BID:25406
Info
Ripe Website Manager Multiple SQL and HTML Injection Vulnerabilities
| Bugtraq ID: | 25406 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-4522 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 22 2007 12:00AM |
| Updated: | May 07 2015 05:35PM |
| Credit: | Nagendra Kumar G and Arun Kethipelly of OS2A have been credited with the discovery of these vulnerabilities. |
| Vulnerable: |
Ripe Website Manager Ripe Website Manager 0.8.9 Ripe Website Manager Ripe Website Manager 0.8.4 |
| Not Vulnerable: |
Ripe Website Manager Ripe Website Manager 0.8.10 |
Discussion
Ripe Website Manager Multiple SQL and HTML Injection Vulnerabilities
Ripe Website Manager is prone to multiple input-validation vulnerabilities, including HTML- and SQL-injection issues.
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
These issues affect versions prior to Ripe Website Manager 0.8.10.
Ripe Website Manager is prone to multiple input-validation vulnerabilities, including HTML- and SQL-injection issues.
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
These issues affect versions prior to Ripe Website Manager 0.8.10.
Exploit / POC
Ripe Website Manager Multiple SQL and HTML Injection Vulnerabilities
An attacker exploits these issues via a browser.
The following exploit URI is available:
http://example.com/admin/pages/delete_page.php?id=0 or 1=1
An attacker exploits these issues via a browser.
The following exploit URI is available:
http://example.com/admin/pages/delete_page.php?id=0 or 1=1
Solution / Fix
Ripe Website Manager Multiple SQL and HTML Injection Vulnerabilities
Solution:
The vendor has released Ripe Website Manager 0.8.10 to address these issues. Please see the references for more information.
Solution:
The vendor has released Ripe Website Manager 0.8.10 to address these issues. Please see the references for more information.
References
Ripe Website Manager Multiple SQL and HTML Injection Vulnerabilities
References:
References:
- Ripe version 0.8.10 (Ripe)
- Ripe Website Manager Homepage (Ripe Website Manager )
- Ripe Website Manager SQL Injection and Cross Site Scripting Vulnerabilities ("OS2A BTO"
)