Outfront Spooky Login SQL Query Manipulation Password Vulnerability
BID:4661
Info
Outfront Spooky Login SQL Query Manipulation Password Vulnerability
| Bugtraq ID: | 4661 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 02 2002 12:00AM |
| Updated: | May 02 2002 12:00AM |
| Credit: | |
| Vulnerable: |
Outfront Spooky Login 2.5 Outfront Spooky Login 2.4 Outfront Spooky Login 2.3 Outfront Spooky Login 2.2 Outfront Spooky Login 2.1 Outfront Spooky Login 2.0 |
| Not Vulnerable: | |
Discussion
Outfront Spooky Login SQL Query Manipulation Password Vulnerability
Spooky Login is a commerical web access control and account management software package. It is distributed and maintained by Outfront, and is designed for Microsoft IIS Webservers.
Under some circumstances, it may be possible for a remote user to gain unauthorized access to pages protected by Spooky Login. The problem is a SQL query manipulation vulnerability in the authentication component.
It is possible for remote attackers to corrupt the logic of queries such that a successful login will occur regardless of the supplied password.
Spooky Login is a commerical web access control and account management software package. It is distributed and maintained by Outfront, and is designed for Microsoft IIS Webservers.
Under some circumstances, it may be possible for a remote user to gain unauthorized access to pages protected by Spooky Login. The problem is a SQL query manipulation vulnerability in the authentication component.
It is possible for remote attackers to corrupt the logic of queries such that a successful login will occur regardless of the supplied password.
Exploit / POC
Outfront Spooky Login SQL Query Manipulation Password Vulnerability
The following values are to bypass authentication:
User: admin (this selects the first index from the table)
Password: ' OR ''='
The following values are to bypass authentication:
User: admin (this selects the first index from the table)
Password: ' OR ''='
Solution / Fix
Outfront Spooky Login SQL Query Manipulation Password Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Outfront Spooky Login SQL Query Manipulation Password Vulnerability
References:
References: