lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Date: 31 Dec 2004 13:19:01 -0000
From: mike bailey <mike@...r.net>
To: bugtraq@...urityfocus.com
Subject: SQL Injection Vulnerability In IBProArcade




A flaw exists in the high scores module of IbProArcade which allows malicious SQL Code to be executed on the database the board & arcade use.

Demo: http://www.ibproarcade.com/index.php?act=Arcade&do=stats&gameid=104FOO

Fix this vuln by following the following directions...

open your sources/Arcade.php file

Find this code bit:

[code]       //----------------------------------------
       // Show_Stats
       //
       // This shows the leaderboard
       //
       //----------------------------------------

       function show_stats() {

               global $ibforums, $DB, $std;[/code]


Directly under that, add..

[code]if(!is_numeric($ibforums->input['gameid']))
          {
               $std->Error( array( 'LEVEL' => 1, 'MSG' => 'dont_try_it') );
          }[/code]


then open up your lang/en/lang_Arcade.php file scroll down to the bottom where you will find

[code] );

?>[/code]


right above that, add this:

[code]
#security
dont_try_it             => "I don't think so annie."[/code]

And you're set.


Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ