Exploitation Summary
EIP tracks 1 public exploit for CVE-2017-7581.
PoCs published by Marco Rivoli, Charles Fol, including Metasploit module auxiliary/admin/http/typo3_news_module_sqli.
AI-analyzed exploit summary This Metasploit module exploits a SQL injection vulnerability in TYPO3's News module (CVE-2017-7581) to extract administrator credentials via blind SQLi. It manipulates the ordering of news articles to infer characters in the username and password hash.
Description
SQL injection vulnerability in NewsController.php in the News module 5.3.2 and earlier for TYPO3 allows unauthenticated users to execute arbitrary SQL commands via vectors involving overwriteDemand for order and OrderByAllowed.
Exploits (1)
This Metasploit module exploits a SQL injection vulnerability in TYPO3's News module (CVE-2017-7581) to extract administrator credentials via blind SQLi. It manipulates the ordering of news articles to infer characters in the username and password hash.
References (1)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H