HP Network Automation CVE-2011-2403 SQL Injection Vulnerability
BID:48924
Info
HP Network Automation CVE-2011-2403 SQL Injection Vulnerability
| Bugtraq ID: | 48924 |
| Class: | Input Validation Error |
| CVE: |
CVE-2011-2403 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 28 2011 12:00AM |
| Updated: | Jul 28 2011 12:00AM |
| Credit: | HP |
| Vulnerable: |
HP Network Automation 9.10 HP Network Automation 9.0 HP Network Automation 7.6 HP Network Automation 7.5 HP Network Automation 7.2 HP Network Automation 0 |
| Not Vulnerable: | |
Discussion
HP Network Automation CVE-2011-2403 SQL Injection Vulnerability
HP Network Automation is prone to an SQL-injection vulnerability because the application fails to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database.
HP Network Automation 7.2x, 7.5x, 7.6x, 9.0, 9.10 are vulnerable.
HP Network Automation is prone to an SQL-injection vulnerability because the application fails to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database.
HP Network Automation 7.2x, 7.5x, 7.6x, 9.0, 9.10 are vulnerable.
Exploit / POC
HP Network Automation CVE-2011-2403 SQL Injection Vulnerability
Attackers can use a browser to exploit this issue.
The following example URI is available:
http://www.example.com/view.php?id=1'+union+select+1,2,concat(user(),0x3a,version(),0x3a,database()),4,5,6,7,8,9,10,11'
Attackers can use a browser to exploit this issue.
The following example URI is available:
http://www.example.com/view.php?id=1'+union+select+1,2,concat(user(),0x3a,version(),0x3a,database()),4,5,6,7,8,9,10,11'
Solution / Fix
HP Network Automation CVE-2011-2403 SQL Injection Vulnerability
Solution:
The vendor released an update. Please see the references for details.
Solution:
The vendor released an update. Please see the references for details.