CVE-2008-1316 |
|
发布时间 :2008-03-13 10:44:00 | ||
修订时间 :2008-09-05 00:00:00 | ||||
NMCOE |
[原文]SQL injection vulnerability in qtf_ind_search_ov.php in QT-cute QuickTalk Forum 1.6 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
[CNNVD]QT-cute QuickTalk Forum ‘qtf_ind_search_ov.php’ SQL注入漏洞(CNNVD-200803-211)
QT-cute QuickTalk Forum 中的qtf_ind_search_ov.php存在SQL注入漏洞。远程攻击者通过di参数来执行任意SQL命令。
–
CVSS (基础分值)
CVSS分值: | 6.8 | [中等(MEDIUM)] |
机密性影响: | PARTIAL | [很可能造成信息泄露] |
完整性影响: | PARTIAL | [可能会导致系统文件被修改] |
可用性影响: | PARTIAL | [可能会导致性能下降或中断资源访问] |
攻击复杂度: | MEDIUM | [漏洞利用存在一定的访问条件] |
攻击向量: | NETWORK | [攻击者不需要获取内网访问权或本地访问权] |
身份认证: | NONE | [漏洞利用无需身份认证] |
–
CWE (弱点类目)
CWE-89 | [SQL命令中使用的特殊元素转义处理不恰当(SQL注入)] |
–
CPE (受影响的平台与产品)
cpe:/a:qt-cute:quicktalk_forum:1.5.0.3 | |
cpe:/a:qt-cute:quicktalk_forum:1.3 | |
cpe:/a:qt-cute:quicktalk_forum:1.6 | |
cpe:/a:qt-cute:quicktalk_forum:1.4 |
–
OVAL (用于检测的技术细节)
未找到相关OVAL定义 |
–
官方数据库链接
–
其它链接及资源
http://xforce.iss.net/xforce/xfdb/41148 (UNKNOWN) XF quicktalkforum-id-sql-injection(41148) |
http://www.securityfocus.com/bid/28215 (UNKNOWN) BID 28215 |
http://www.milw0rm.com/exploits/5240 (UNKNOWN) MILW0RM 5240 |
http://secunia.com/advisories/29288 (VENDOR_ADVISORY) SECUNIA 29288 |
–
漏洞信息
QT-cute QuickTalk Forum ‘qtf_ind_search_ov.php’ SQL注入漏洞 | |
中危 | SQL注入 |
2008-03-13 00:00:00 | 2008-09-05 00:00:00 |
远程 | |
QT-cute QuickTalk Forum 中的qtf_ind_search_ov.php存在SQL注入漏洞。远程攻击者通过di参数来执行任意SQL命令。 |
–
公告与补丁
目前厂商还没有提供补丁或者升级程序,建议使用此软件的用户随时关注厂商的主页以获取最新版本: http://www.qt-cute.org/ |
–
漏洞信息 (5240)
QuickTalk Forum <= 1.6 Remote Blind SQL Injection Exploit (EDBID:5240) | |
php | webapps |
2008-03-12 | Verified |
0 | t0pP8uZz |
N/A |
[点击下载] |
QuickTalk Forum <= 1.6 Blind SQL Injection Exploit - QuickTalk Forum <= 1.6 Blind SQL Injection Exploit -
Site: (URL to QuickTalk Forum site ie: http://www.site.com/quicktalkforum)
User: (UserID of the user you want the MD5 hash too.)
Output (MD5 Hash):
(Do not touch untill exploit says its done)Notes: QuickTalk Forum uses the MD5 algorithms to encrypt passwords
Coded By t0pP8uZz - h4ck-y0u.org
# milw0rm.com [2008-03-12]
–
漏洞信息
42824 |
|
QuickTalk Forum qtf_ind_search_ov.php id Parameter SQL Injection | |
Remote / Network Access |
Information Disclosure, Input Manipulation |
Loss of Confidentiality, Loss of Integrity |
Solution Unknown |
Exploit Public | Uncoordinated Disclosure |
–
漏洞描述
QuickTalk Forum contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'qtf_ind_search_ov.php' script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database. |
–
时间线
2008-03-12 |
Unknow |
2008-03-12 | Unknow |