BugTraq
TYPO3 SQL Injection vunerabilitie Mar 03 2005 05:08PM
Fabian Becker (neonomicus gmx de) (2 replies)


Hello Bugtraq :)
Two week ago I found a SQL Inejetion vulnerabilitie in Typo3 (in the links-section/module/whatever you call it).
I didn't really try to develope an exploit because I thought typo3 would directly react.
But unfortunately that didn't happen :/

So here is the url that "exploits" the vulnerabilitie in a friendly way ;)

http://[UrlToLinksSection]?&no_cache=1&action=getviewcategory&category_u
id=1%20or%201=1

Maybe someone will find a way to exploit this one in a maliceous way so get typo3 to update it's software!

C ya
Neonomicus :)

Greets go out to:
Visus, Data-Storm-Industries-crew, Feanor, juck, the orkut-community :D, everybody I forgot ^^

Visit me at http://data-storm.com :)

[ reply ]
Re: TYPO3 3rd party extension (cmw_linklist) SQL Injection vunerability Mar 04 2005 01:06PM
Michael Shigorin (mike osdn org ua)
Re: TYPO3 SQL Injection vunerabilitie Mar 03 2005 11:06PM
Sebastian Wolfgarten (sebastian wolfgarten com) (2 replies)
Re: TYPO3 SQL Injection vunerabilitie Mar 04 2005 04:45PM
Michael Shigorin (mike osdn org ua)
RE: TYPO3 SQL Injection vunerabilitie Mar 04 2005 12:54AM
GulfTech Security Research (security gulftech org)


 

Privacy Statement
Copyright 2010, SecurityFocus