vendor:
Mini-SQL
by:
Hispahack Research Team
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Mini-SQL
Affected Version From: msql 2.0.4.1
Affected Version To: msql 2.0.11
Patch Exists: NO
Related CWE:
CPE: a:minisql_project:minisql
Platforms Tested: Solaris x86
Unknown
w3-msql Buffer Overflow Vulnerability
The w3-msql cgi-program, shipped with Mini-SQL, is vulnerable to multiple buffer overflow vulnerabilities. One of these vulnerabilities has been proven to be exploitable. The exploit involves overflowing the stack inside a scanf() call using the content-length field. By exploiting this vulnerability, an attacker can execute arbitrary code remotely with the privileges of the webserver (usually nobody).
Mitigation:
Apply the latest patches for Mini-SQL. Alternatively, disable or remove the w3-msql cgi-program from the webserver if it is not required.