bttlxeForum Input Validation Flaw in Login Process Lets Remote Users Gain Access Without Authenticating
|
|
SecurityTracker Alert ID: 1006632
|
|
SecurityTracker URL: http://securitytracker.com/id?1006632
|
|
CVE Reference: CVE-2003-0215
(Links to External Site)
|
Updated: Jun 14 2008
|
Original Entry Date: Apr 23 2003
|
Impact: User access via network
|
Exploit Included: Yes
|
Description: SAUDI_DEFACERZ reported an input validation vulnerability in the 'bttlxeForum' forum software. A remote user can inject certain SQL command characters to login to the system without authenticating.
It is reported that the software does not filter or validate user-supplied input to remove SQL command characters from the username
and password fields [and possibly other fields]. A remote user can reportedly supply the following password with no user name when
logging in to become authenticated by the system:
'or''='
|
Impact: A remote user can gain access to the application without authenticating.
|
Solution: No solution was available at the time of this entry.
|
Vendor URL: www.battleaxesoftware.com/forums/ (Links to External Site)
|
Cause: Input validation error
|
Underlying OS: Windows (Any)
|
Reported By: Du|L - <saudi_defacerz@hotmail.com>
|
Message History:
This archive entry has one or more follow-up message(s) listed below.
|
Source Message Contents
|
Date: Wed, 23 Apr 2003 10:45:04 +0000
From: Du|L - <saudi_defacerz@hotmail.com>
Subject: bttlxeForum SQL Injection
|
##################################
bttlxeForum Bug
SQL Injection
SSP Forum
##################################
-------------------------------------------------------
this bug too easy
go to any bttlxeForum you will join for Ex : www.server.com/forum/index.asp
now log in with password : 'or''='
and dont write user name
logged in
Web Page : http://www.battleaxesoftware.com
Server : Windows
----------------------------------------------------------------
SAUDI_DEFACERZ@hotmail.com
_________________________________________________________________
The new MSN 8: advanced junk mail protection and 2 months FREE*
http://join.msn.com/?page=features/junkmail
|
|