what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

ZH2004-07SA.txt

ZH2004-07SA.txt
Posted Feb 18, 2004
Authored by G00db0y | Site zone-h.org

In the Online Store Kit 3.0 Products, problems exist where user-supplied data is not properly sanitized, allowing for a remote attacker to influence SQL queries and gain sensitive information.

tags | exploit, remote
SHA-256 | 91655534097ed426223b3cbc07ebef79a74c042776ee4f6fd5ddc69f2150cfa5

ZH2004-07SA.txt

Change Mirror Download


ZH2004-07SA (security advisory): Multiple Sql injection vulnerabilities in Online Store Kit 3.0 Products (Lite - Standard and Pro)

Published: 17 february 2004

Released: 17 february 2004

Name: Online Store Kit Products (Lite - Standard - Pro)

Affected Systems: 3.0

Issue: Sql Injection Vulnerability

Author: G00db0y from Zone-h Security Labs - zetalabs@zone-h.org - g00db0y@zone-h.org

Vendor: http://www.ecommerce.com




Description

***********

Zone-h Security Team has discovered multiple flaws in Online Store Kit 3.0 Products (Lite - Standard - Pro). There are multiple vulnerabilities in the current version of Online Store Kit Lite that allows an attacker to disclose sensitive information that could be used to gain unauthorized access.
Online Store Kit 3.0 Lite:"That pretty much says it all when it comes to the Online Store Kit 3.0 Lite. To sum it up, this package includes all of the features that are essential for a usable shopping cart with uninterrupted functioning. If your e-commerce needs don't go far, but the products/services you offer have the demand, this package is for you.
Please, note, that all the packages include core features and have room for additional features. The core features are included in every package, and provide a solid base for building a successful e-store. The functionality and the quantity of additional features depend on the package you choose."
Online Store Kit 3.0 Standard: "Going with the standard is always a good thing; especially when it comes to making a profit. When your store goes online, you should attract visitors not only with the assortment of the products and services you offer, but also with a dynamic and friendly sales atmosphere. If organized with Online Store Kit 3.0 Standard, your e-store will include all the basic features plus advanced functionality, enabling a powerful and profit-generating virtual shop."
Online Store Kit 3.0 Pro: "Intense research, development and testing has brought us to what we call the Online Store Kit 3.0 Pro. The features which enable a comprehensive procedure for purchasing, taxation calculation, shipping and handling, and payment methods are the hallmarks of this professional package. Please, note, that all the packages include core features and additional ones."






Details

*******


The problems exist due to insufficient sanitization of user-supplied data. A remote attacker may exploit these issues to influence SQL query logic to disclose sensitive information that could be used to gain unauthorized access.

For example try this:

http://address/directory/shop.php?cat=[query]
http://address/directory/more.php?id=[query]
http://address/directory/lite/shop_by_brand.php?cat_manufacturer=[query]
http://address/directory/listing.php?id=[query]




Solution:

*********

The vendor has been contacted and a patch was not yet produced.



G00db0y from Zone-h Security Labs - zetalabs@zone-h.org - g00db0y@zone-h.org



http://www.zone-h.org/en/advisories/read/id=3972/
Login or Register to add favorites

File Archive:

July 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jul 1st
    27 Files
  • 2
    Jul 2nd
    10 Files
  • 3
    Jul 3rd
    35 Files
  • 4
    Jul 4th
    27 Files
  • 5
    Jul 5th
    18 Files
  • 6
    Jul 6th
    0 Files
  • 7
    Jul 7th
    0 Files
  • 8
    Jul 8th
    28 Files
  • 9
    Jul 9th
    44 Files
  • 10
    Jul 10th
    24 Files
  • 11
    Jul 11th
    25 Files
  • 12
    Jul 12th
    11 Files
  • 13
    Jul 13th
    0 Files
  • 14
    Jul 14th
    0 Files
  • 15
    Jul 15th
    0 Files
  • 16
    Jul 16th
    0 Files
  • 17
    Jul 17th
    0 Files
  • 18
    Jul 18th
    0 Files
  • 19
    Jul 19th
    0 Files
  • 20
    Jul 20th
    0 Files
  • 21
    Jul 21st
    0 Files
  • 22
    Jul 22nd
    0 Files
  • 23
    Jul 23rd
    0 Files
  • 24
    Jul 24th
    0 Files
  • 25
    Jul 25th
    0 Files
  • 26
    Jul 26th
    0 Files
  • 27
    Jul 27th
    0 Files
  • 28
    Jul 28th
    0 Files
  • 29
    Jul 29th
    0 Files
  • 30
    Jul 30th
    0 Files
  • 31
    Jul 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close