what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

SPIP SQL Injection / Path Disclosure

SPIP SQL Injection / Path Disclosure
Posted Oct 1, 2011
Site tehtri-security.com

SPIP suffers from path disclosure and remote SQL injection vulnerabilities.

tags | advisory, remote, vulnerability, sql injection, info disclosure
advisories | CVE-2008-5813
SHA-256 | c5ec4f4dc665c1bcb44ae29ca93daddf8a426574d987114ec133f714bb184766

SPIP SQL Injection / Path Disclosure

Change Mirror Download
Gents,

Our CTO discovered two vulnerabilities in a well-known CMS product named
SPIP :
- a local path disclosure (all SPIP version)
- and an SQL injection (SPIP 1.9.2 branch)

Technical information were notified to the SPIP-Team for fixes
(responsible disclosure, with fixes included). SPIP is now patched and
latest version can be downloaded (see further).

If you want more 0days and more offensive tricks, check how to join us
through the end of this email ;)


*About the SPIP vulnerabilities*

== Background: SPIP is a publishing system for the Internet in which
great importance is attached to collaborative working, to multilingual
environments, and to simplicity of use for web authors.

== 1st Security Advisory: TEHTRIS-SA-2011-011
-- Title: SQL Injection in SPIP 1.9.2j
-- Affected Vendors: SPIP (www.spip.net)
-- Affected Product: SPIP
-- Versions: 1.9.2j
-- CVE-ID: linked to CVE-2008-5813

== 2nd Security Advisory: TEHTRIS-SA-2011-010
-- Title: Local Path Disclosure in all SPIP version
-- Affected Vendors: SPIP (www.spip.net)
-- Affected Product: SPIP
-- Versions: 1.9.2j, 2.0.15, 2.1.10

== Credits: Discovered by _Laurent Estieux_ CTO TEHTRI-Security

== Update your CMS: https://www.spip.net/en_article5265.html
== Vulnerability reference (in french) :
https://www.spip-contrib.net/SPIP-1-9-2k-2-0-16-2-1-11-et-3-0-0-beta-disponibles
== Other references:
https://www.spip.net/rubrique33.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5813


*About TEHTRI-security*

[w] https://www.tehtri-security.com
[m] web@tehtri-security.com
[t] @tehtris


*Join us for live hacking sessions*

- OCT 2011 / Hack In The Box / Kuala Lumpur, Malaysia
Training: "Hunting Web Attackers"
[w] https://conference.hitb.org/hitbsecconf2011kul/?page_id=274
=> 0days included - don't use them at home, kids :)
==> Sorry: HITB Classroom already FULL

- DEC 2011 / Black Hat / Abu Dhabu, UAE
Training: "Advanced PHP Hacking"
[w]
https://www.blackhat.com/html/bh-ad-11/training/bh-ad-11-training_PHP.html
=> 0days included - don't use them at home, kids :)

- FEB 2012 / Hack In The Box GSEC / Mumbai, India
Training "Strategic Cyber Attacks,Advanced Persistent Threats & Beyond"
[w] https://gsec.hitb.org/?p=134
=> 0days included - don't use them at home, kids :)

Login or Register to add favorites

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    0 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close