Written by SirGod
Thursday, 26 March 2009 22:52
Comparison Engine Power 'product.comparision.php' SQL Injection Vulnerability
Input Validation Error
Mar 25 2009 12:00AM
Mar 26 2009 05:46PM
Kalptaru Infotech Comparison Engine Power 1.0
Comparison Engine Power is prone to an SQL-injection vulnerability because it fails to sufficiently
sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data,
or exploit latent vulnerabilities in the underlying database.
Comparison Engine Power 1.0 is vulnerable; other versions may also be affected.
An attacker can exploit this issue via a browser.
The following example URI is available:
http://www.example.com/comparisonengine/product.comparision.php?cat=null union all select 1,
concat_ws(0x3a,id,email,password,nickname),3,4,5 from daype_users_tb--&name=GSM
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if
you are aware of more recent information, please mail us at:
--Comparison Engine Power Script
(Kalptaru Infotech Ltd.)