Joomla! HTML Injection and SQL Injection Vulnerabilities
BID:41743
Info
Joomla! HTML Injection and SQL Injection Vulnerabilities
| Bugtraq ID: | 41743 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 15 2010 12:00AM |
| Updated: | Jul 16 2010 06:56PM |
| Credit: | Andy Gorges, Jose Antonio Vazquez Gonzalez, and oCERT |
| Vulnerable: |
Joomla Joomla 1.5.18 Joomla Joomla 1.5.17 Joomla Joomla 1.5.16 Joomla Joomla 1.5.15 Joomla Joomla 1.5.14 Joomla Joomla 1.5.13 Joomla Joomla 1.5.12 Joomla Joomla 1.5.11 Joomla Joomla 1.5.10 Joomla Joomla 1.5.9 Joomla Joomla 1.5.8 Joomla Joomla 1.5.7 Joomla Joomla 1.5.6 Joomla Joomla 1.5.5 Joomla Joomla 1.5.4 Joomla Joomla 1.5.3 Joomla Joomla 1.5.2 Joomla Joomla 1.5.1 Joomla Joomla 1.5 |
| Not Vulnerable: |
Joomla Joomla 1.5.19 |
Discussion
Joomla! HTML Injection and SQL Injection Vulnerabilities
Joomla! is prone to multiple HTML-injection vulnerabilities and an SQL-injection vulnerability because the application fails to sufficiently sanitize user-supplied input.
A successful exploit can allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
Joomla! 1.5.x versions prior to and including 1.5.18 are vulnerable.
Joomla! is prone to multiple HTML-injection vulnerabilities and an SQL-injection vulnerability because the application fails to sufficiently sanitize user-supplied input.
A successful exploit can allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
Joomla! 1.5.x versions prior to and including 1.5.18 are vulnerable.
Exploit / POC
Joomla! HTML Injection and SQL Injection Vulnerabilities
Attackers can use a browser to exploit these issues.
Attackers can use a browser to exploit these issues.
Solution / Fix
Joomla! HTML Injection and SQL Injection Vulnerabilities
Solution:
Updates are available; please see the references for more information.
Solution:
Updates are available; please see the references for more information.
References
Joomla! HTML Injection and SQL Injection Vulnerabilities
References:
References:
- Joomla! Homepage (Joomla )
- Joomla! Developer - [20100701] (Joomla!)
- Joomla! Developer - [20100703] (Joomla!)
- Joomla! Developer - [20100704] (Joomla!)
- Joomla! Developer - Core - XSS Vulnerability in Back End (Joomla)