Blogs manager <= 1.101 SQL Injection Vulnerability
------------------------------------------------------------------------
Author: muuratsalo (Revshell.com) www.2cto.com muuratsalo [at] gmail [dot] com
: Http://sourceforge.net/projects/blogsmanager/
[0x01] defect Overview:
Blogs manager <= 1.101 contains injection defects. To exploit this vulnerability, you must have a registered account.
Example:
The http://www.bkjia.com/blogs/_ authors_list.php? A = search & value = 1 & SearchFor = muuratsalo & SearchOption = Contains & SearchField = [SQL
Injection]
Http://www.bkjia.com/blogs/_ blogs_list.php? A = search & value = 1 & SearchFor = muuratsalo & SearchOption = Contains & SearchField = [SQL
Injection]
Http://www.bkjia.com/blogs/_ category_list.php? A = search & value = 1 & SearchFor = muuratsalo & SearchOption = Contains & SearchField = [SQL
Injection]
Http://www.bkjia.com/blogs/_ comments_list.php? A = search & value = 1 & SearchFor = muuratsalo & SearchOption = Contains & SearchField = [SQL
Injection]
Http://www.bkjia.com/blogs/_ policy_list.php? A = search & value = 1 & SearchFor = muuratsalo & SearchOption = Contains & SearchField = [SQL
Injection]
Http://www.bkjia.com/blogs/_ rate_list.php? A = search & value = 1 & SearchFor = muuratsalo & SearchOption = Contains & SearchField = [SQL
Injection]
Http://www.bkjia.com/blogs/categoriesblogs_list.php? A = search & value = 1 & SearchFor = muuratsalo & SearchOption = Contains & SearchField = [SQL
Injection]
Http://www.bkjia.com/blogs/chosen_authors_list.php? A = search & value = 1 & SearchFor = muuratsalo & SearchOption = Contains & SearchField = [SQL
Injection]
Http://www.bkjia.com/blogs/chosen_blogs_list.php? A = search & value = 1 & SearchFor = muuratsalo & SearchOption = Contains & SearchField = [SQL
Injection]
Http://www.bkjia.com/blogs/chosen_comments_list.php? A = search & value = 1 & SearchFor = muuratsalo & SearchOption = Contains & SearchField = [SQL
Injection]
Http://www.bkjia.com/blogs/help_list.php? A = search & value = 1 & SearchFor = muuratsalo & SearchOption = Contains & SearchField = [SQL
Injection]
Www.2cto.com solution:
Filter parameter input for the above pages