Title: myGesuad modules/kategorie.php ID Parameter SQL Injection
Info
Disclosure
May 07, 2009
Discovery
May 06, 2009
Dates
Exploit
May 15, 2009
Solution
May 07, 2009
Description
myGesaud contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the modules/kategorie.php script not properly sanitizing user-supplied input to the ID parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
Classification
Location:
Remote / Network Access
Attack Type:
Information Disclosure,
Input Manipulation
Impact:
Loss of Confidentiality,
Loss of Integrity
Solution:
Patch / RCS
Exploit:
Exploit Public
Disclosure:
Vendor Verified,
Vendor Verified,
Coordinated Disclosure
OSVDB:
Web Related
Solution
Upgrade to the version 0.9.14 posted on 5/7/2009 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.