CS-Partner 'gestion.php' Multiple SQL Injection Vulnerabilities
BID:31886
Info
CS-Partner 'gestion.php' Multiple SQL Injection Vulnerabilities
| Bugtraq ID: | 31886 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-6165 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 23 2008 12:00AM |
| Updated: | Feb 24 2009 10:47PM |
| Credit: | StAkeR |
| Vulnerable: |
comscripts.com CS-Partner 1.0 |
| Not Vulnerable: | |
Discussion
CS-Partner 'gestion.php' Multiple SQL Injection Vulnerabilities
CS-Partner is prone to multiple SQL-injection vulnerabilities because it fails to sufficiently sanitize user-supplied input before using it in an SQL query.
Exploiting these issues could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
CS-Partner 1.0 is vulnerable; other versions may also be affected.
CS-Partner is prone to multiple SQL-injection vulnerabilities because it fails to sufficiently sanitize user-supplied input before using it in an SQL query.
Exploiting these issues could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
CS-Partner 1.0 is vulnerable; other versions may also be affected.
Exploit / POC
CS-Partner 'gestion.php' Multiple SQL Injection Vulnerabilities
Attackers can use a browser to exploit these issues.
The following example SQL queries are available:
' or '1=1
' or ascii(substring((select password from CSPartner where id=1),1,1))=[97]/*
Attackers can use a browser to exploit these issues.
The following example SQL queries are available:
' or '1=1
' or ascii(substring((select password from CSPartner where id=1),1,1))=[97]/*
Solution / Fix
CS-Partner 'gestion.php' Multiple SQL Injection Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
CS-Partner 'gestion.php' Multiple SQL Injection Vulnerabilities
References:
References:
- CS-Partner Homepage (ComScripts.com)