Kayako Esupport多个跨站脚本和SQL注入漏洞

Kayako Esupport多个跨站脚本和SQL注入漏洞

漏洞ID 1108375 漏洞类型 SQL注入
发布时间 2004-12-18 更新时间 2005-10-20
图片[1]-Kayako Esupport多个跨站脚本和SQL注入漏洞-安全小百科CVE编号 CVE-2004-1413
图片[2]-Kayako Esupport多个跨站脚本和SQL注入漏洞-安全小百科CNNVD-ID CNNVD-200412-534
漏洞平台 PHP CVSS评分 5.0
|漏洞来源
https://www.exploit-db.com/exploits/25038
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200412-534
|漏洞详情
KayakoeSupport2.x版本存在多个SQL注入漏洞。远程攻击者借助多个参数执行任意SQL命令,这些参数包括:(1)subcat,(2)rate,(3)questiondetails,(4)ticketkey22,(5)index.php中的email22参数,或者(6)ForgotKey特征的e-mail字段。
|漏洞EXP
source: http://www.securityfocus.com/bid/12037/info
 
Kayako eSupport is prone to multiple input validation vulnerabilities. One cross-site scripting and six SQL injection vulnerabilities.
 
These issues may collectively threaten compromise of software and database security properties. Possible attacks include theft of cookie-based authentication credentials, exposure or modification of database information, and a potential for attacks against the underlying database implementation. 

http://www.example.com/index.php?_a=knowledgebase&_j=subcat&_i=[SQL]

http://www.example.com/index.php?_a=knowledgebase&_j=rate&_i=[SQL]&type=no

http://www.example.com/index.php?_a=knowledgebase&_j=questiondetails&_i=[SQL]

http://www.example.com/index.php?_a=tickets&_m=viewmain&email22=blah@blah&ticketkey22=[
SQL]

http://www.example.com/index.php?_a=tickets&_m=viewmain&email22=[SQL]&ticketkey22=
|参考资料

来源:XF
名称:kayako-sql-injection(18572)
链接:http://xforce.iss.net/xforce/xfdb/18572
来源:BID
名称:12037
链接:http://www.securityfocus.com/bid/12037
来源:www.gulftech.org
链接:http://www.gulftech.org/?node=research&article;_id=00056-12182004
来源:BUGTRAQ
名称:20041218MultipleVulnerabilitiesInKayakoeSupportv2.x
链接:http://marc.theaimsgroup.com/?l=bugtraq&m;=110352428607171&w;=2

相关推荐: Atrium Software Mercur Mail Server 3.2 Multiple 的缓冲区溢出漏洞

Atrium Software Mercur Mail Server 3.2 Multiple 的缓冲区溢出漏洞 漏洞ID 1105751 漏洞类型 缓冲区溢出 发布时间 2000-03-14 更新时间 2005-10-20 CVE编号 CVE-2000-01…

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享