Bitweaver 2.0.0 and Prior Multiple Input Validation Vulnerabilities
BID:26801
Info
Bitweaver 2.0.0 and Prior Multiple Input Validation Vulnerabilities
| Bugtraq ID: | 26801 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-6412 CVE-2007-6374 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 10 2007 12:00AM |
| Updated: | Jul 05 2016 10:00PM |
| Credit: | DoZ is credited with the discovery of these vulnerabilities. |
| Vulnerable: |
Bitweaver Bitweaver 2.0 Bitweaver Bitweaver 1.3.1 Bitweaver Bitweaver 1.3 Bitweaver Bitweaver 1.2.1 Bitweaver Bitweaver 1.2 Bitweaver Bitweaver 1.1.1 beta |
| Not Vulnerable: | |
Discussion
Bitweaver 2.0.0 and Prior Multiple Input Validation Vulnerabilities
Bitweaver is prone to multiple input-validation vulnerabilities because the application fails to sufficiently sanitize user-supplied input including multiple cross-site scripting vulnerabilities, multiple HTML-injection vulnerabilities, and an SQL-injection vulnerability.
A successful exploit of these vulnerabilities could allow an attacker to compromise the application, access or modify data, steal cookie-based authentication credentials, or exploit vulnerabilities in the underlying database. Other attacks are also possible.
Bitweaver 2.0.0 and prior versions are vulnerable to these issues.
Bitweaver is prone to multiple input-validation vulnerabilities because the application fails to sufficiently sanitize user-supplied input including multiple cross-site scripting vulnerabilities, multiple HTML-injection vulnerabilities, and an SQL-injection vulnerability.
A successful exploit of these vulnerabilities could allow an attacker to compromise the application, access or modify data, steal cookie-based authentication credentials, or exploit vulnerabilities in the underlying database. Other attacks are also possible.
Bitweaver 2.0.0 and prior versions are vulnerable to these issues.
Exploit / POC
Bitweaver 2.0.0 and Prior Multiple Input Validation Vulnerabilities
Attackers can use a browser to exploit these issues. To exploit a cross-site scripting vulnerability, an attacker must entice an unsuspecting user to follow a malicious URI.
The following proof-of-concept URIs are available:
http://www.example.com/users/register.php/XSS
http://www.example.com/search/index.php/XSS
http://www.example.com/users/login.php?error=XSS
http://www.example.com/search/index.php?tk=316dccdfb62a3cad613e&highlight=[SQL_INJECTION]=&search=go
Attackers can use a browser to exploit these issues. To exploit a cross-site scripting vulnerability, an attacker must entice an unsuspecting user to follow a malicious URI.
The following proof-of-concept URIs are available:
http://www.example.com/users/register.php/XSS
http://www.example.com/search/index.php/XSS
http://www.example.com/users/login.php?error=XSS
http://www.example.com/search/index.php?tk=316dccdfb62a3cad613e&highlight=[SQL_INJECTION]=&search=go
Solution / Fix
Bitweaver 2.0.0 and Prior Multiple Input Validation Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Bitweaver 2.0.0 and Prior Multiple Input Validation Vulnerabilities
References:
References: