|
» Topic: Critical SQL Injection PHPNuke <= 7.8 - Your_Account module
» Added by: sp3x
» Date: 16.2.2006
In PHPNuke <= 7.8 - Your_Account module exist critical sql injection.
The result of SQL injection we can't see so.....
This is kind of blind sql injection .
SecurityReason realised the advisory and the POC
http://securityreason.com/achievement_securityalert/32
http://securityreason.com/achievement_exploitalert/7
Using POC we can create php shell on remote server but the sql user must have "FILE" rights to create the shell.
Also it could be written exploit to read md5 hash of admin using blind sql injection method.
|