NovaBoard Multiple Remote Vulnerabilities
BID:33788
Info
NovaBoard Multiple Remote Vulnerabilities
| Bugtraq ID: | 33788 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 16 2009 12:00AM |
| Updated: | Feb 17 2009 09:07PM |
| Credit: | brain[pillow] |
| Vulnerable: |
NovaBoard NovaBoard 1.0 |
| Not Vulnerable: | |
Discussion
NovaBoard Multiple Remote Vulnerabilities
NovaBoard is prone to multiple remote vulnerabilities:
- Multiple SQL-injection vulnerabilities
- A local file-include vulnerability
- An arbitrary-file-upload vulnerability
Exploiting these issues could allow an attacker to upload and execute arbitrary code within the context of the webserver, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database. Other attacks are also possible.
NovaBoard 1.0.0 is vulnerable; other versions may also be affected.
NovaBoard is prone to multiple remote vulnerabilities:
- Multiple SQL-injection vulnerabilities
- A local file-include vulnerability
- An arbitrary-file-upload vulnerability
Exploiting these issues could allow an attacker to upload and execute arbitrary code within the context of the webserver, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database. Other attacks are also possible.
NovaBoard 1.0.0 is vulnerable; other versions may also be affected.
Exploit / POC
NovaBoard Multiple Remote Vulnerabilities
An attacker can exploit these issues via a browser.
The following example URIs and POST data are available:
An attacker can exploit these issues via a browser.
The following example URIs and POST data are available:
Solution / Fix
NovaBoard Multiple Remote Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].