Release date:
Updated on:
Affected Systems:
WordPress Mingle Forum 1.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 58059
CVE (CAN) ID: CVE-2013-0734, CVE-2013-0735
The WordPress Mingle Forum plug-in allows you to add forums on WordPress sites/blogs easily and quickly.
Mingle Forum 1.0.33.3 and other versions have multiple vulnerabilities, which can be exploited by malicious users to execute SQL injection attacks.
1. wp-content/plugins/mingle-forum/wpf. class. php does not properly filter the index. php ("page_id" is set to a valid forum page id, and "search_words" POST parameter in "mingleforumaction" is set to "search.
2. wp-content/plugins/mingle-forum/fs-admin/fs-admin.php does not properly filter wp-admin/admin. php ("page" is set to "mfgroups", "usergroup is set to a valid group ID, and" togroupusers "POST parameter in" add_user_togroup.
3. wp-content/plugins/mingle-forum/wpf. class. php does not properly filter index. php ("page_id" is set to a valid forum page
Id, "mingleforumaction" is set to "viewtopic", "t" is set to "1.0", and "remove_post") is set to "id.
4. wp-content/plugins/mingle-forum/wpf. class. php does not properly filter the index. php ("page_id" is set to a valid forum page id, "mingleforumaction" is set to "viewtopic", "t" is set to "1.0", and "sticky" is set ").
5. wp-content/plugins/mingle-forum/wpf. class. php does not properly filter the index. php ("page_id" is set to a valid forum page id, "mingleforumaction" is set to "viewtopic", "t" is set to "1.0", and "closed" is set ").
6. wp-content/plugins/mingle-forum/wpf. class. php does not properly filter the index. php ("page_id" is set to a valid forum page id, and "mingleforumaction" is set to "postreply") "thread" parameter.
<* Source: Charlie Eriksen
Link: http://secunia.com/advisories/52167/
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
WordPress
---------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://wordpress.org/extend/plugins/mingle-forum/