Archive

Archive for the ‘Access Bypass’ Category

CMSQLite Arbitrary File Upload and Security Bypass

August 25th, 2010
Comments Off

Application: CMSQLite
Affected Version: version 1.3.1 and other versions.
Vendor’s URL: CMSQLite
Bug Type: File Upload and Security Bypass
Risk Level: Critical

Solution:
Restrict access to the “admin” directory (e.g. via a “.htaccess” file).

Access Bypass, Content Management, File Inclusion

Ultimate PHP Board Security Bypass and File Disclosure

July 29th, 2010
Comments Off

Application: Ultimate PHP Board
Affected Version: version 2.2.6 and other versions.
Vendor’s URL: Ultimate PHP Board
Bug Type: Security Bypass and File Disclosure
Risk Level: Medium

Solution:
Restrict access to the admin_restore.php script (e.g. via .htaccess). Edit the source code to ensure that input is properly verified.

Access Bypass, Discussion Boards, Information Disclosure

Drupal Ubercart MIGS Module Security Issue

June 21st, 2010
Comments Off

Application: Drupal
Affected Version: versions prior to 6.x-1.2.
Vendor’s URL: Ubercart MIGS Module
Bug Type: Security Bypass
Risk Level: Critical

Solution:
Update to version 6.x-1.2 or later.

Access Bypass, Content Management

Drupal Ogone | Ubercart Module Security Bypass

June 21st, 2010
Comments Off

Application: Drupal
Affected Version: versions prior to 5.x-1.6 and 6.x-1.5.
Vendor’s URL: Ogone | Ubercart Module
Bug Type: Security Bypass
Risk Level: Critical

Solution:
Update to version 5.x-1.6 or later, or 6.x-1.5 or later.

Access Bypass, Content Management

Drupal AddonChat Module Security Bypass and Script Insertion

June 21st, 2010
Comments Off

Application: Drupal
Affected Version: versions prior to 6.x-1.2.
Vendor’s URL: AddonChat Module
Bug Type: Security Bypass and Cross Site Scripting
Risk Level: Critical

Solution:
Update to version 6.x-1.2.

Access Bypass, Content Management, Cross Site Scripting

WordPress Simple:Press Plugin Multiple Vulnerabilities

May 26th, 2010
Comments Off

Application: WordPress
Affected Version: versions prior to 4.1.3.
Vendor’s URL: Simple:Press Plugin
Bug Type: Security Bypass and System access
Risk Level: Critical

Solution:
Update to version 4.1.3 or later.

Access Bypass, Content Management

Drupal Views Module Arbitrary Code Execution

April 23rd, 2010
Comments Off

Application: Drupal Views Module Arbitrary Code Execution
Affected Version: versions prior to 6.x-2.9 and 5.x-1.7.
Vendor’s URL: Views Module
Bug Type: Code Execution
Risk Level: Critical

Solution:
Update to the latest version.

Access Bypass, Content Management

phpBB Feed Permissions Security Issue

March 26th, 2010
Comments Off

Application: phpBB
Affected Version: version 3.0.7.
Vendor’s URL: phpBB
Bug Type: Security Bypass
Risk Level: version 3.0.7.

Solution:
Update to version 3.0.7PL1 or later.

Access Bypass, Discussion Boards

WordPress Woopra Analytics Plugin Arbitrary File Creation

December 24th, 2009
Comments Off

Application: WordPress
Affected Version:
Vendor’s URL: Woopra Analytics Plugin
Bug Type: System Access
Risk Level: Critical

Solution:
Update to version 1.4.3.2.

Remove ofc_upload_image.php file from the Open Flash Chart directory.

Access Bypass, Content Management

XOOPS Profile Activation Security Bypass

December 1st, 2009
Comments Off

Application: XOOPS
Affected Version: prior to 2.4.1
Vendor’s URL: XOOPS Profile Activation
Bug Type: Security Bypass
Risk Level: Medium

Solution:
Update to version 2.4.1.

Access Bypass, Content Management

WordPress File Upload and Script Insertion

December 1st, 2009
Comments Off

Application: WordPress
Affected Version: version 2.8.5
Vendor’s URL: WordPress
Bug Type: File Upload and Script Insertion
Risk Level: Medium

Solution:
Update to version 2.8.6.

Access Bypass, Content Management, Cross Site Scripting

Joomla Jumi Component Backdoor Security Issue

December 1st, 2009
Comments Off

Application: Joomla
Affected Version:
Vendor’s URL: Jumi Component
Bug Type: Access Bypass
Risk Level: Critical

Solution:
The vendor has released clean installation files.

Access Bypass, Content Management

Joomla iCRM Basic Component Multiple Vulnerabilities

October 23rd, 2009
Comments Off

Application: Joomla
Affected Version: version 1.4.2.31 and other versions.
Vendor’s URL: iCRM Basic Component
Bug Type: Security Bypass
Risk Level: Critical

Solution:
Edit the source code to ensure that input is properly sanitised.

Access Bypass, Content Management

Drupal Go - url redirects Module Multiple Vulnerabilities

September 23rd, 2009
Comments Off

Application: Drupal Go
Affected Version:
Vendor’s URL: url redirects Module
Bug Type: SQL Injection, Cross Site Scripting, Security Bypass
Risk Level: Critical

Solution:
Update to version 5.x-1.4 or 6.x-1.1.

Access Bypass, Content Management, Cross Site Scripting, SQL Injection

Zen Cart Administration Security Bypass

June 27th, 2009
Comments Off

Application: Zen Cart
Affected Version: version 1.3.8a (full fileset 12112007) and other versions.
Vendor’s URL: Zen Cart
Bug Type: Security Bypass
Risk Level: Critical

Solution:
Apply patch.
http://www.zen-cart.com/forum/attachment.php?attachmentid=5943&d=1245789282

Access Bypass, E-Commerce

Movable Type Security Bypass and XSS

June 27th, 2009
Comments Off

Application: Movable Type
Affected Version: versions prior to 4.26.
Vendor’s URL: Movable Type
Bug Type: Security Bypass and Cross Site Scripting
Risk Level: Critical

Solution:
Update to version 4.26 or later.

Access Bypass, Blogs, Cross Site Scripting

Drupal Views Module Multiple Vulnerabilities

June 27th, 2009
Comments Off

Application: Drupal
Affected Version: versions prior to 6.x-2.6.
Vendor’s URL: Drupal Views Module
Bug Type: Cross Site Scripting and Security Bypass
Risk Level: Critical

Solution:
Update to version 6.x-2.6.
http://drupal.org/node/488082

Access Bypass, Content Management, Cross Site Scripting

Drupal Services Module Key-based Access Security Bypass

June 27th, 2009
Comments Off

Application: Drupal
Affected Version: versions prior to 6.x-0.14.
Vendor’s URL: Drupal Services Module
Bug Type: Security Bypass
Risk Level: Critical

Solution:
Update to version 6.x-0.14.
http://drupal.org/node/487784

Access Bypass, Content Management

osCommerce Finnish Bank Payment Module Security Bypass

June 27th, 2009
Comments Off

Application: osCommerce Finnish Bank Payment Module
Affected Version:
Vendor’s URL: osCommerce Finnish Bank Payment Module
Bug Type: Security Bypass
Risk Level: Critical

Solution:
Apply vendor patch

Access Bypass, E-Commerce

osCommerce Luottokunta Module Security Bypass

June 27th, 2009
Comments Off

Application: osCommerce Luottokunta Module
Affected Version: versions prior to 1.3.
Vendor’s URL: osCommerce Luottokunta Module
Bug Type: Security Bypass
Risk Level: Critical

Solution:
Update to version 1.3.
http://addons.oscommerce.com/info/3698

Access Bypass, E-Commerce