CodeAvalanche News admin/default.asp SQL injection
| canews-admindefault-sql-injection (26586) |
Description:
CodeAvalanche News is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements to the admin/default.asp script using the 'password' parameter, which could allow the attacker to add, modify, or delete information in the back-end database.
Note: This vulnerability has also been found in CodeAvalanche FreeForum.
Platforms Affected:
- CodeAvalanche, CodeAvalanche News 1.2
- CodeAvalanche, FreeForum 1.0
Remedy:
No remedy available as of January 3, 2009.
Consequences:
Data Manipulation
References:
- BugTraq Mailing List, Thu Jun 01 2006 - 12:09:10 CDT , CA Forum Remote SQL Injection at http://archives.neohapsis.com/archives/bugtraq/2006-05/0714.html.
- CodeAvalanche FreeForum Web site, FreeForum - asp forum script at http://www.truecontent.info/codeavalanche/asp-forum-script.php.
- CodeAvalanche News Web site, CodeAvalanche News at http://www.truecontent.info/codeavalanche/asp-news-publishing-script.php.
- Colander Security Group Advisory - May 18, 2006, CANews Remote Multiple Vulnerability at http://colander.altervista.org/advisory/CANews.txt.
- BID-18031: CodeAvalanche News Default.ASP SQL Injection Vulnerability
- CVE-2006-2499: SQL injection vulnerability in default.asp in CodeAvalanche News (CANews) 1.2 allows remote attackers to execute arbitrary SQL commands via the password field.
- CVE-2006-2822: SQL injection vulnerability in admin/default.asp in Dusan Drobac CodeAvalanche FreeForum (aka CAForum) 1.0 allows remote attackers to execute arbitrary SQL commands via the password parameter.
- OSVDB ID: 25652: CodeAvalanche News /Admin/default.asp password Variable SQL Injection
- SA20171: CodeAvalanche News SQL Injection Vulnerabilities
- SA20411: CodeAvalanche FreeForum Multiple Vulnerabilities
- SECTRACK ID: 1016212: CodeAvalanche FreeForum Input Validation Hole Permits SQL Injection Attacks
- VUPEN/ADV-2006-1870: CodeAvalanche News password Variable Handling SQL Injection Vulnerability
- VUPEN/ADV-2006-2117: CodeAvalanche FreeForum SQL Injection and Cross Site Scripting Vulnerabilities
Reported:
May 18, 2006
The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.
Copyright (c) 1994-2009 Internet Security Systems, Inc. All rights reserved worldwide.
For corrections or additions please email xforce@iss.net
