ttCMS / ttForum Profile.php SQL Injection Vulnerability
BID:7543
Info
ttCMS / ttForum Profile.php SQL Injection Vulnerability
| Bugtraq ID: | 7543 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 09 2003 12:00AM |
| Updated: | May 09 2003 12:00AM |
| Credit: | Discovery of this vulnerability credited to Charles Reinold <[email protected]>. |
| Vulnerable: |
ttForum ttForum 1.1 ttCMS ttCMS 2.2 |
| Not Vulnerable: | |
Discussion
ttCMS / ttForum Profile.php SQL Injection Vulnerability
A problem with ttCMS/ttForum could make it possible for a remote user launch SQL injection attacks.
It has been reported that a problem exists in the Profile.php script distributed as part of the software. Due to insufficient sanitizing of input, it is possible for a remote user to inject arbitrary SQL into the database used by the web forums. This vulnerability may be exploited to reset or change the password of a user.
There are conflicting reports about whether or not this issue exists. The vendor has stated that exploitation of this issue is not possible.
A problem with ttCMS/ttForum could make it possible for a remote user launch SQL injection attacks.
It has been reported that a problem exists in the Profile.php script distributed as part of the software. Due to insufficient sanitizing of input, it is possible for a remote user to inject arbitrary SQL into the database used by the web forums. This vulnerability may be exploited to reset or change the password of a user.
There are conflicting reports about whether or not this issue exists. The vendor has stated that exploitation of this issue is not possible.
Exploit / POC
ttCMS / ttForum Profile.php SQL Injection Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
ttCMS / ttForum Profile.php SQL Injection Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
ttCMS / ttForum Profile.php SQL Injection Vulnerability
References:
References:
- ttCMS (ttCMS)
- ttForum (ttForum)
- ttcms and ttforum exploits (Charles Reinold
)