Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:11888
HistoryMar 22, 2006 - 12:00 a.m.

1WebCalendar v 4.x vuln.

2006-03-2200:00:00
vulners.com
31

1WebCalendar v 4.x vuln.

##############################################
Vuln. discovered by : r0t
Date: 22 march 2006
vendor:www.bensonitsolutions.com/calendar/v4/
affected version: v4.0 and prior
orginal advisory:
http://pridels.blogspot.com/2006/03/1webcalendar-v-4x-vuln.html
##############################################

Vuln.desc.

1WebCalendar contains a flaw that allows a remote sql injection
attacks.Input passed to the "EventID" ,"NewsID" ,"ThisDate" parameter isn't
properly sanitised before being used in a SQL query. This can be exploited
to manipulate SQL queries by injecting arbitrary SQL code

/viewEvent.cfm?EventID=[code]
/news/newsView.cfm?NewsID=[code]
/mainCal.cfm?=[code]

also attacker can easy get install. path just with testing those holes*
###############################################
Solution:
Edit the source code to ensure that input is properly sanitised.
###############################################
More information @ unsecured-systems.com/forum/