XOOPS 'admin.php' SQL Injection Vulnerability
BID:71117
Info
XOOPS 'admin.php' SQL Injection Vulnerability
| Bugtraq ID: | 71117 |
| Class: | Input Validation Error |
| CVE: |
CVE-2014-8999 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 17 2014 12:00AM |
| Updated: | Mar 08 2015 04:04PM |
| Credit: | Manuel Garcia Cardenas |
| Vulnerable: |
Xoops Xoops 2.5.5 Xoops Xoops 2.5.4 Xoops Xoops 2.5.3 Xoops Xoops 2.5.2 Xoops Xoops 2.5.1 a Xoops Xoops 2.5.1 Xoops Xoops 2.5 Xoops Xoops 2.4.3 Xoops Xoops 2.4.2 Xoops Xoops 2.4.1 Xoops Xoops 2.4 Xoops Xoops 2.3.3 Xoops Xoops 2.3.2 b Xoops Xoops 2.3.2 Xoops Xoops 2.2.5 Xoops Xoops 2.2.3 RC1 Xoops Xoops 2.2.3 Xoops Xoops 2.2.1 Xoops Xoops 2.0.18 .1 Xoops Xoops 2.0.18 Xoops Xoops 2.0.17 1 Xoops Xoops 2.0.15 Xoops Xoops 2.0.14 Xoops Xoops 2.0.13 .2 Xoops Xoops 2.0.13 .1 Xoops Xoops 2.0.12 a Xoops Xoops 2.0.12 Xoops Xoops 2.0.11 Xoops Xoops 2.0.10 Xoops Xoops 2.0.9 .3 Xoops Xoops 2.0.9 .2 Xoops Xoops 2.0.5 .2 Xoops Xoops 2.0.5 .1 Xoops Xoops 2.0.5 Xoops Xoops 2.0.3 Xoops Xoops 2.0.2 Xoops Xoops 2.0.1 Xoops Xoops 2.0 Xoops Xoops 1.3.10 Xoops Xoops 1.3.9 Xoops Xoops 1.3.8 Xoops Xoops 1.3.7 Xoops Xoops 1.3.6 Xoops Xoops 1.3.5 Xoops Xoops 1.0 RC1 Xoops Xoops 1.0 RC3.0.5 Xoops Xoops 1.0 RC3 Xoops Xoops 2.3 Xoops Xoops 2.0.16 core Xoops Xoops 1.0 |
| Not Vulnerable: | |
Discussion
XOOPS 'admin.php' SQL Injection Vulnerability
XOOPS is prone to an SQL-injection vulnerability because the application fails to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit may allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
XOOPS 2.5.6 and prior are vulnerable.
XOOPS is prone to an SQL-injection vulnerability because the application fails to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit may allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
XOOPS 2.5.6 and prior are vulnerable.
Exploit / POC
XOOPS 'admin.php' SQL Injection Vulnerability
Attackers can use a browser to exploit this issue.
The following example URI is available:
http://www.example.com /xoops/htdocs/modules/system/admin.php?fct=users&selgroups=1
Attackers can use a browser to exploit this issue.
The following example URI is available:
http://www.example.com /xoops/htdocs/modules/system/admin.php?fct=users&selgroups=1
Solution / Fix
XOOPS 'admin.php' SQL Injection Vulnerability
Solution:
Reportedly the issue is fixed, however Symantec has not confirmed this. Please contact the vendor for more information.
Solution:
Reportedly the issue is fixed, however Symantec has not confirmed this. Please contact the vendor for more information.