Advertisement






NMDeluxe XSS & SQL Injection Vulnerabilities

CVE Category Price Severity
CVE-2006-1107 CWE-89 Not specified Not specified
Author Risk Exploitation Type Date
Not specified Not specified Not specified 2006-03-23
Our sensors found this exploit at: http://cxsecurity.com/ascii/WLB-2006030087

Below is a copy:

New eVuln Advisory:
NMDeluxe XSS & SQL Injection Vulnerabilities
http://evuln.com/vulns/93/summary.html

--------------------Summary----------------
eVuln ID: EV0093
CVE: CVE-2006-1107 CVE-2006-1108
Software: NMDeluxe
Sowtware's Web Site: http://nmdeluxe.com/
Versions: 1.0.0 STABLE
Critical Level: Moderate
Type: Multiple Vulnerabilities
Class: Remote
Status: Patched
PoC/Exploit: Available
Solution: Available
Discovered by: Aliaksandr Hartsuyeu (eVuln.com)

-----------------Description---------------
1. Cross-Site Scripting Vulnerability.

Vulnerable Script: news.php

Variable $post['nick'] isn't properly sanitized. This can be used to post arbitrary HTML or JavaScript code.

2. SQL Injection Vulnerability

Vulnerable script: news.php

Variable $id is not properly sanitized before being used in SQL query. This can be used to make any SQL query by injecting arbitrary SQL code.

Condition: magic_quotes_gpc = off

--------------PoC/Exploit----------------------
Available at: http://evuln.com/vulns/93/exploit.html

--------------Solution---------------------
To fix those vulnerabilities install or upgrade to 1.0.1 version.

--------------Credit-----------------------
Discovered by: Aliaksandr Hartsuyeu (eVuln.com)

Regards,
Aliaksandr Hartsuyeu
http://evuln.com - Penetration Testing Services
.

Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum