Multiple Geeklog Vulnerabilities
BID:8718
Info
Multiple Geeklog Vulnerabilities
| Bugtraq ID: | 8718 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 29 2003 12:00AM |
| Updated: | Sep 29 2003 12:00AM |
| Credit: | Discovery of these issues is credited to "Lorenzo Hernandez Garcia-Hierro" <[email protected]>. |
| Vulnerable: |
Geeklog Geeklog 1.3.8 rc2 Geeklog Geeklog 1.3.8 rc1 Geeklog Geeklog 1.3.8 -1 Geeklog Geeklog 1.3.8 Geeklog Geeklog 1.3.7 sr2 Geeklog Geeklog 1.3.7 sr1 Geeklog Geeklog 1.3.7 Geeklog Geeklog 1.3.5 sr2 Geeklog Geeklog 1.3.5 sr1 Geeklog Geeklog 1.3.5 Geeklog Geeklog 1.3 |
| Not Vulnerable: | |
Discussion
Multiple Geeklog Vulnerabilities
Geeklog is prone to multiple vulnerabilities, including cross-site scripting and SQL injection issues. Exploitation of these issues could permit unauthorized access to user accounts and sensitive information.
Some of these issues may be related to previously documented vulnerabilities in Geeklog.
Geeklog is prone to multiple vulnerabilities, including cross-site scripting and SQL injection issues. Exploitation of these issues could permit unauthorized access to user accounts and sensitive information.
Some of these issues may be related to previously documented vulnerabilities in Geeklog.
Exploit / POC
Multiple Geeklog Vulnerabilities
The following examples were provided:
http://www.example.com/faqman/index.php?op=view&t=518">[XSS ATTACK CODE]
http://www.example.com/filemgmt/brokenfile.php?lid=17'/%22%3[XSS ATTACK CODE]
http://www.example.com/index.php?topic=te'st/[SQL INJECTION CODE]
http://www.example.com/forum/viewtopic.php?forum=1&showtopic=1'0/[SQL INJECTION
CODE]
http://www.example.com/staticpages/index.php?page=test'test/[SQL INJECTION CODE]
http://www.example.com/filemgmt/visit.php?lid=1'1'0/[SQL INJECTION CODE]
http://www.example.com/filemgmt/viewcat.php?cid='6/[SQL INJECTION CODE]
http://www.example.com/comment.php?type=filemgmt&cid=filemgmt-1'70/[SQL INJECTION
CODE]
http://www.example.com/comment.php?mode=display&sid=filemgmt-XXX&title=[SQL
INJECTION CODE]
http://www.example.com/filemgmt/singlefile.php?lid=17'/0/[SQL INJECTION CODE]
The following examples were provided:
http://www.example.com/faqman/index.php?op=view&t=518">[XSS ATTACK CODE]
http://www.example.com/filemgmt/brokenfile.php?lid=17'/%22%3[XSS ATTACK CODE]
http://www.example.com/index.php?topic=te'st/[SQL INJECTION CODE]
http://www.example.com/forum/viewtopic.php?forum=1&showtopic=1'0/[SQL INJECTION
CODE]
http://www.example.com/staticpages/index.php?page=test'test/[SQL INJECTION CODE]
http://www.example.com/filemgmt/visit.php?lid=1'1'0/[SQL INJECTION CODE]
http://www.example.com/filemgmt/viewcat.php?cid='6/[SQL INJECTION CODE]
http://www.example.com/comment.php?type=filemgmt&cid=filemgmt-1'70/[SQL INJECTION
CODE]
http://www.example.com/comment.php?mode=display&sid=filemgmt-XXX&title=[SQL
INJECTION CODE]
http://www.example.com/filemgmt/singlefile.php?lid=17'/0/[SQL INJECTION CODE]
Solution / Fix
Multiple Geeklog Vulnerabilities
Solution:
The vendor has released GeekLog 1.3.8-1sr3 to address the cross-site scripting issues:
Geeklog Geeklog 1.3
Geeklog Geeklog 1.3.5
Geeklog Geeklog 1.3.5 sr2
Geeklog Geeklog 1.3.5 sr1
Geeklog Geeklog 1.3.7 sr1
Geeklog Geeklog 1.3.7 sr2
Geeklog Geeklog 1.3.7
Geeklog Geeklog 1.3.8 rc1
Geeklog Geeklog 1.3.8 rc2
Geeklog Geeklog 1.3.8 -1
Geeklog Geeklog 1.3.8
Solution:
The vendor has released GeekLog 1.3.8-1sr3 to address the cross-site scripting issues:
Geeklog Geeklog 1.3
-
GeekLog Geeklog 1.3.8-1sr3
http://www.geeklog.net/filemgmt/visit.php?lid=271
Geeklog Geeklog 1.3.5
-
GeekLog Geeklog 1.3.8-1sr3
http://www.geeklog.net/filemgmt/visit.php?lid=271
Geeklog Geeklog 1.3.5 sr2
-
GeekLog Geeklog 1.3.8-1sr3
http://www.geeklog.net/filemgmt/visit.php?lid=271
Geeklog Geeklog 1.3.5 sr1
-
GeekLog Geeklog 1.3.8-1sr3
http://www.geeklog.net/filemgmt/visit.php?lid=271
Geeklog Geeklog 1.3.7 sr1
-
GeekLog Geeklog 1.3.8-1sr3
http://www.geeklog.net/filemgmt/visit.php?lid=271
Geeklog Geeklog 1.3.7 sr2
-
GeekLog Geeklog 1.3.8-1sr3
http://www.geeklog.net/filemgmt/visit.php?lid=271
Geeklog Geeklog 1.3.7
-
GeekLog Geeklog 1.3.8-1sr3
http://www.geeklog.net/filemgmt/visit.php?lid=271
Geeklog Geeklog 1.3.8 rc1
-
GeekLog Geeklog 1.3.8-1sr3
http://www.geeklog.net/filemgmt/visit.php?lid=271
Geeklog Geeklog 1.3.8 rc2
-
GeekLog Geeklog 1.3.8-1sr3
http://www.geeklog.net/filemgmt/visit.php?lid=271
Geeklog Geeklog 1.3.8 -1
-
GeekLog Geeklog 1.3.8-1sr3
http://www.geeklog.net/filemgmt/visit.php?lid=271
Geeklog Geeklog 1.3.8
-
GeekLog Geeklog 1.3.8-1sr3
http://www.geeklog.net/filemgmt/visit.php?lid=271