Drupal User Karma Module Cross Site Scripting and Multiple SQL Injection Vulnerabilities
BID:32491
Info
Drupal User Karma Module Cross Site Scripting and Multiple SQL Injection Vulnerabilities
| Bugtraq ID: | 32491 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-6275 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 26 2008 12:00AM |
| Updated: | May 07 2015 05:20PM |
| Credit: | Stéphane Corlosquet (scor) |
| Vulnerable: |
Drupal User Karma 6.x-1.x-dev Drupal User Karma 5.x-1.12 |
| Not Vulnerable: |
Drupal User Karma 6.x-1.0-beta1 Drupal User Karma 5.x-1.13 |
Discussion
Drupal User Karma Module Cross Site Scripting and Multiple SQL Injection Vulnerabilities
The 'User Karma' module for Drupal is prone to multiple SQL-injection vulnerabilities and a cross-site scripting vulnerability because it fails to sufficiently sanitize user-supplied data.
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
These issues affect the following:
'User Karma' module for Drupal 5.x prior to 5.x-1.13
'User Karma' module for Drupal 6.x prior to 6.x-1.0-beta1
The 'User Karma' module for Drupal is prone to multiple SQL-injection vulnerabilities and a cross-site scripting vulnerability because it fails to sufficiently sanitize user-supplied data.
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
These issues affect the following:
'User Karma' module for Drupal 5.x prior to 5.x-1.13
'User Karma' module for Drupal 6.x prior to 6.x-1.0-beta1
Exploit / POC
Drupal User Karma Module Cross Site Scripting and Multiple SQL Injection Vulnerabilities
An attacker can exploit these issues via a browser. To exploit a cross-site scripting issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
An attacker can exploit these issues via a browser. To exploit a cross-site scripting issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
Solution / Fix
Drupal User Karma Module Cross Site Scripting and Multiple SQL Injection Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Drupal User Karma 6.x-1.x-dev
Drupal User Karma 5.x-1.12
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Drupal User Karma 6.x-1.x-dev
-
Drupal user_karma-6.x-1.0-beta1.tar.gz
http://ftp.drupal.org/files/projects/user_karma-6.x-1.0-beta1.tar.gz
Drupal User Karma 5.x-1.12
-
Drupal user_karma-5.x-1.13.tar.gz
http://ftp.drupal.org/files/projects/user_karma-5.x-1.13.tar.gz
References
Drupal User Karma Module Cross Site Scripting and Multiple SQL Injection Vulnerabilities
References:
References:
- Drupal Homepage (Drupal)
- SA-2008-071 - User Karma - Multiple vulnerabilities (Drupal)