Baran CMS Multiple Input Validation Vulnerabilities
BID:33764
Info
Baran CMS Multiple Input Validation Vulnerabilities
| Bugtraq ID: | 33764 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 13 2009 12:00AM |
| Updated: | Feb 13 2009 10:58PM |
| Credit: | Aria-Security Team |
| Vulnerable: |
Baran CMS Baran CMS 1.0 |
| Not Vulnerable: | |
Discussion
Baran CMS Multiple Input Validation Vulnerabilities
Baran CMS is prone to multiple input-validation vulnerabilities:
- An arbitrary-file-upload vulnerability
- A cross-site scripting vulnerability
- An SQL-injection vulnerability
- An HTTP-header-injection vulnerability
An attacker can exploit these issues to upload and execute arbitrary ASP code in the context of the webserver process, compromise the affected application, access or modify data, exploit latent vulnerabilities in the underlying database, or steal cookie-based authentication credentials. Other attacks are also possible.
Baran CMS 1.0 is vulnerable; other versions may also be affected.
Baran CMS is prone to multiple input-validation vulnerabilities:
- An arbitrary-file-upload vulnerability
- A cross-site scripting vulnerability
- An SQL-injection vulnerability
- An HTTP-header-injection vulnerability
An attacker can exploit these issues to upload and execute arbitrary ASP code in the context of the webserver process, compromise the affected application, access or modify data, exploit latent vulnerabilities in the underlying database, or steal cookie-based authentication credentials. Other attacks are also possible.
Baran CMS 1.0 is vulnerable; other versions may also be affected.
Exploit / POC
Baran CMS Multiple Input Validation Vulnerabilities
Attackers can exploit these issues via a browser. For some issues, an attacker must entice an unsuspecting victim into visiting following a malicious link.
The following example URIs are available:
Attackers can exploit these issues via a browser. For some issues, an attacker must entice an unsuspecting victim into visiting following a malicious link.
The following example URIs are available:
Solution / Fix
Baran CMS Multiple Input Validation Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].