OpenBB多个输入验证漏洞

OpenBB多个输入验证漏洞

漏洞ID 1107911 漏洞类型 SQL注入
发布时间 2004-04-26 更新时间 2005-10-20
图片[1]-OpenBB多个输入验证漏洞-安全小百科CVE编号 CVE-2004-1966
图片[2]-OpenBB多个输入验证漏洞-安全小百科CNNVD-ID CNNVD-200412-1165
漏洞平台 PHP CVSS评分 7.5
|漏洞来源
https://www.exploit-db.com/exploits/24058
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200412-1165
|漏洞详情
OpenBulletinBoard(OpenBB)1.0.6以及之前版本存在多个SQL注入漏洞。远程攻击者借助(1)board.php的FID参数(2)member.php的sortorder,perpage,或id参数,(3)search.php的forums参数,或(4)post.php的PID或FID参数执行任意SQL命令。
|漏洞EXP
source: http://www.securityfocus.com/bid/10214/info
      
It has been reported that OpenBB is affected by multiple input validation vulnerabilities. These issues are due to a failure of the application to properly sanitize user supplied user input.
      
The SQL issues may allow a remote attacker to manipulate query logic, potentially leading to unauthorized access to sensitive information such as the administrator password hash or corruption of database data. SQL injection attacks may also potentially be used to exploit latent vulnerabilities in the underlying database implementation.
      
The cross-site scripting issues could permit a remote attacker to create a malicious URI link that includes hostile HTML and script code. If this link were followed, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the affected web site and may allow for theft of cookie-based authentication credentials or other attacks.

http://www.example.com/search.php?&sortby=dateline&sort=DESC&q=open&forums%5B[SQL]%5D
|参考资料

来源:XF
名称:openbb-multiplescripts-sql-injection(15964)
链接:http://xforce.iss.net/xforce/xfdb/15964
来源:BID
名称:10214
链接:http://www.securityfocus.com/bid/10214
来源:SECTRACK
名称:1009935
链接:http://securitytracker.com/id?1009935
来源:SECUNIA
名称:11481
链接:http://secunia.com/advisories/11481
来源:BUGTRAQ
名称:20040425MultipleVulnerabilitiesInOpenBB
链接:http://marc.theaimsgroup.com/?l=bugtraq&m;=108301983206107&w;=2

相关推荐: Active News Manager – ‘login.asp’ SQL Injection

Active News Manager – ‘login.asp’ SQL Injection 漏洞ID 1055128 漏洞类型 发布时间 2005-05-25 更新时间 2005-05-25 CVE编号 N/A CNNVD-ID N/A 漏洞平台 Sola…

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享