vendor:
Gravy Media Cms
by:
x0r
7.5
CVSS
HIGH
Multiple Sql Injections & Arbitrary File Download
89
CWE
Product Name: Gravy Media Cms
Affected Version From: 01.07
Affected Version To: 01.07
Patch Exists: NO
Related CWE: N/A
CPE: a:gravy_media:gravy_media_cms
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
Gravy Media Cms 1.07
Gravy Media Cms 1.07 is vulnerable to multiple SQL injections and arbitrary file download. The vulnerable files are login.php, viewmsg.php, rate.php and forcedownload.php. The vulnerable code snippets are present in the login.php, viewmsg.php, rate.php and forcedownload.php files. The vulnerable code snippets are present in the login.php, viewmsg.php, rate.php and forcedownload.php files. The vulnerable code snippets are present in the login.php, viewmsg.php, rate.php and forcedownload.php files. The vulnerable code snippets are present in the login.php, viewmsg.php, rate.php and forcedownload.php files.
Mitigation:
The application should use parameterized queries to prevent SQL injection attacks. The application should also validate the user input to prevent arbitrary file download.