OCS Inventory NG Server 'login' Parameter SQL Injection Vulnerability
BID:38005
Info
OCS Inventory NG Server 'login' Parameter SQL Injection Vulnerability
| Bugtraq ID: | 38005 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 29 2010 12:00AM |
| Updated: | Jan 29 2010 12:00AM |
| Credit: | Nicolas DEROUET |
| Vulnerable: |
Ocsinventory-Ng OCS Inventory NG Server 1.2.1 Ocsinventory-Ng OCS Inventory NG Server 1.3b3 Ocsinventory-Ng OCS Inventory NG Server 1.02 Ocsinventory-Ng OCS Inventory NG Server 1.01 Ocsinventory-Ng OCS Inventory NG Server 1.00 |
| Not Vulnerable: | |
Discussion
OCS Inventory NG Server 'login' Parameter SQL Injection Vulnerability
OCS Inventory NG Server is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
OCS Inventory NG Server 1.3b3 is vulnerable; other versions may also be affected.
OCS Inventory NG Server is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
OCS Inventory NG Server 1.3b3 is vulnerable; other versions may also be affected.
Exploit / POC
OCS Inventory NG Server 'login' Parameter SQL Injection Vulnerability
Attackers can use a browser to exploit this issue.
The following exploit is available:
Attackers can use a browser to exploit this issue.
The following exploit is available:
Solution / Fix
OCS Inventory NG Server 'login' Parameter SQL Injection Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
OCS Inventory NG Server 'login' Parameter SQL Injection Vulnerability
References:
References:
- OCS Inventory NG Homepage (OCS Inventory Team)
- OCS Inventory NG Server <= 1.3b3 (login) Remote Authentication Bypass (Nicolas DEROUET
)