Joomla! Clantools Component Multiple SQL Injection Vulnerabilities
BID:42986
Info
Joomla! Clantools Component Multiple SQL Injection Vulnerabilities
| Bugtraq ID: | 42986 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 05 2010 12:00AM |
| Updated: | Sep 05 2010 12:00AM |
| Credit: | Solidmedia |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Joomla! Clantools Component Multiple SQL Injection Vulnerabilities
The Clantools component for Joomla! is prone to multiple SQL-injection vulnerabilities because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting these issues could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
Clantools 1.2.3 and 1.5 are vulnerable; other versions may also be affected.
The Clantools component for Joomla! is prone to multiple SQL-injection vulnerabilities because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting these issues could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
Clantools 1.2.3 and 1.5 are vulnerable; other versions may also be affected.
Exploit / POC
Joomla! Clantools Component Multiple SQL Injection Vulnerabilities
Attackers can use a browser to exploit these issues.
The following example URIs are available:
http://www.example.com/[path]/index.php?option=com_clantools&squad=1+[SQLi]
http://www.example.com/[path]/index.php?option=com_clantools&task=clanwar&showgame=1+[SQLi]&Itemid=999
Attackers can use a browser to exploit these issues.
The following example URIs are available:
http://www.example.com/[path]/index.php?option=com_clantools&squad=1+[SQLi]
http://www.example.com/[path]/index.php?option=com_clantools&task=clanwar&showgame=1+[SQLi]&Itemid=999
Solution / Fix
Joomla! Clantools Component Multiple SQL Injection Vulnerabilities
Solution:
Reportedly the vendor has fixed the issue, however Symantec has not confirmed it. Please contact the vendor for more information.
Solution:
Reportedly the vendor has fixed the issue, however Symantec has not confirmed it. Please contact the vendor for more information.
References
Joomla! Clantools Component Multiple SQL Injection Vulnerabilities
References:
References:
- Joomla! Homepage (Joomla!)
- Clantools Homepage (Clantools)