20070129 CVSTrac 2.0.0 Denial of Service (DoS) vulnerabilitymailing list
http://lists.grok.org.uk/pipermail/full-disclosure/2007-January/052058.html CVE-2007-0347
CVSTrac 2.0.0 - Defacement Denial of Service
Record summary
CVE-2007-0347 has a selected CVSS score of 4.3; EIP currently links 1 catalogued exploit.
Description
The is_eow function in format.c in CVSTrac before 2.0.1 does not properly check for the "'" (quote) character, which allows remote authenticated users to execute limited SQL injection attacks and cause a denial of service (database error) via a ' character in certain messages, tickets, or Wiki entries.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBCVSTrac 2.0.0 - Defacement Denial of ServiceExploitDB exploitby Ralf S. EngelschallNot analyzed1 file
References
1131935vdb entry
http://osvdb.org/31935 23940Third-party advisory
http://secunia.com/advisories/23940 2192Third-party advisory
http://securityreason.com/securityalert/2192 cvstrac.orgConfirmation
http://www.cvstrac.org/cvstrac/chngview?cn=850 cvstrac.org
http://www.cvstrac.org/cvstrac/tktview?tn=683 OpenPKG-SA-2007.008Vendor advisory
http://www.openpkg.com/security/advisories/OpenPKG-SA-2007.008.html 20070129 CVSTrac 2.0.0 Denial of Service (DoS) vulnerabilitymailing list
http://www.securityfocus.com/archive/1/458455/100/0/threaded 22296vdb entry
http://www.securityfocus.com/bid/22296 ADV-2007-0398vdb entry
http://www.vupen.com/english/advisories/2007/0398 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2007-0347