header-logo
Suggest Exploit
vendor:
PHPCollab, NetOffice
by:
rgod
7,5
CVSS
HIGH
SQL Injection
89
CWE
Product Name: PHPCollab, NetOffice
Affected Version From: PHPCollab v2.4, PHPCollab v2.5 rc3, NetOffice v2.5.3-pl1, NetOffice v2.6.0b2
Affected Version To: PHPCollab v2.4, PHPCollab v2.5 rc3, NetOffice v2.5.3-pl1, NetOffice v2.6.0b2
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2006

PHPCollab v2.x / NetOffice v2.x sendpassword.php SQL Injection

A vulnerability exists in PHPCollab v2.x and NetOffice v2.x in the 'forgotten password' feature, where an attacker can send themselves the admin (md5(), crypt() or plain text) password by submitting a 'loginForm' POST value to the general/sendpassword.php script.

Mitigation:

Ensure that magic_quotes_gpc is set to On.
Source

Exploit-DB raw data: