Falt4 CMS Multiple Input Validation Vulnerabilities
BID:26786
Info
Falt4 CMS Multiple Input Validation Vulnerabilities
| Bugtraq ID: | 26786 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-6310 CVE-2007-6311 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 10 2007 12:00AM |
| Updated: | Jan 03 2008 02:10PM |
| Credit: | Mesut Timur is credited with the discovery of these issues. |
| Vulnerable: |
Falt4 CMS Falt4 Extreme RC4 |
| Not Vulnerable: | |
Discussion
Falt4 CMS Multiple Input Validation Vulnerabilities
Falt4 Extreme CMS is prone to three input-validation vulnerabilities, including cross-site scripting and SQL-injection issues, that occur because the application fails to adequately sanitize user-supplied input.
A successful exploit may allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
This issue was reported to affect Falt4 Extreme (RC4). Other versions may also be affected.
Falt4 Extreme CMS is prone to three input-validation vulnerabilities, including cross-site scripting and SQL-injection issues, that occur because the application fails to adequately sanitize user-supplied input.
A successful exploit may allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
This issue was reported to affect Falt4 Extreme (RC4). Other versions may also be affected.
Exploit / POC
Falt4 CMS Multiple Input Validation Vulnerabilities
Attackers can exploit these issues via a browser. To exploit a cross-site scripting vulnerability, an attacker must entice a victim to follow a malicious URI.
The following proof-of-concept URIs are available:
http://www.example.com/falt4/index.php?handler=cat&nav_ID=1'%20and%20'1'='1
http://www.example.com/falt4/index.php?handler=>">&nav_ID=1
http://www.example.com/falt4/modules/feed/feed.php?type=rss&lang=1&topic=>">
Attackers can exploit these issues via a browser. To exploit a cross-site scripting vulnerability, an attacker must entice a victim to follow a malicious URI.
The following proof-of-concept URIs are available:
http://www.example.com/falt4/index.php?handler=cat&nav_ID=1'%20and%20'1'='1
http://www.example.com/falt4/index.php?handler=>">&nav_ID=1
http://www.example.com/falt4/modules/feed/feed.php?type=rss&lang=1&topic=>">
Solution / Fix
Falt4 CMS Multiple Input Validation Vulnerabilities
Solution:
The vendor has released an updated version to address the vulnerabilities.
Falt4 CMS Falt4 Extreme RC4
Solution:
The vendor has released an updated version to address the vulnerabilities.
Falt4 CMS Falt4 Extreme RC4
-
Falt4 CMS falt4extreme.zip
http://downloads.sourceforge.net/falt4/falt4extreme.zip?use_mirror=osd n
References
Falt4 CMS Multiple Input Validation Vulnerabilities
References:
References:
- Falt4 CMS Homepage (Falt4 CMS)
- Falt4 Security Problems (Falt4 CMS)
- Falt4 CMS Security Report/Advisory (Mesut Timur
)