PHPBB2 Page_Header.PHP SQL Injection Vulnerability
BID:6888
Info
PHPBB2 Page_Header.PHP SQL Injection Vulnerability
| Bugtraq ID: | 6888 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 19 2003 12:00AM |
| Updated: | Feb 19 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to David Zentner <[email protected]>. |
| Vulnerable: |
phpBB Group phpBB 2.0.2 phpBB Group phpBB 2.0.1 phpBB Group phpBB 2.0 .0 |
| Not Vulnerable: |
phpBB Group phpBB 2.0.3 |
Discussion
PHPBB2 Page_Header.PHP SQL Injection Vulnerability
A SQL injection vulnerability has been reported in phpBB2.
phpBB2, in some cases, does not sufficiently sanitize user-supplied input which is used when constructing SQL queries. As a result, attackers may supply malicious parameters to manipulate the structure and logic of SQL queries. This may result in unauthorized operations being performed on the underlying database. This issue may be exploited to cause sensitive information to be disclosed to a remote attacker.
A SQL injection vulnerability has been reported in phpBB2.
phpBB2, in some cases, does not sufficiently sanitize user-supplied input which is used when constructing SQL queries. As a result, attackers may supply malicious parameters to manipulate the structure and logic of SQL queries. This may result in unauthorized operations being performed on the underlying database. This issue may be exploited to cause sensitive information to be disclosed to a remote attacker.
Exploit / POC
PHPBB2 Page_Header.PHP SQL Injection Vulnerability
This vulnerability can be exploited with a web browser. The following exploit was submitted:
This vulnerability can be exploited with a web browser. The following exploit was submitted:
Solution / Fix
PHPBB2 Page_Header.PHP SQL Injection Vulnerability
Solution:
This issue has reportedly been addressed in phpBB versions 2.0.3 and later.
Solution:
This issue has reportedly been addressed in phpBB versions 2.0.3 and later.
References
PHPBB2 Page_Header.PHP SQL Injection Vulnerability
References:
References:
- PHPbb Security Flaws - 2003-02-18 (CGI_Shield)