PT-2006-3918 · Phpbannerexchange · Phpbannerexchange
Publicado
2006-06-19
·
Atualizado
2018-10-18
·
CVE-2006-3013
CVSS v2.0
5.1
Média
| Vetor | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
phpBannerExchange versions prior to 2.0 Update 6
Description
The issue arises from an interpretation conflict in the resetpw.php file, allowing remote attackers to execute arbitrary SQL commands. This is achieved by including a null (%00) character after a valid e-mail address in the
email parameter, which bypasses the validation check performed by the eregi PHP command.Recommendations
For versions prior to 2.0 Update 6, consider updating to version 2.0 Update 6 or later to resolve the issue. As a temporary workaround, restrict the use of the
email parameter in the resetpw.php file to prevent potential SQL command execution.Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Phpbannerexchange