vendor:
BBPortalS
by:
Max007
7.5
CVSS
HIGH
Blind SQL Injection
CWE
Product Name: BBPortalS
Affected Version From: 1.5.10
Affected Version To: 1.6.2002
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
BBPortalS BBsProcesS Remote Blind SQL Injection Exploit
This exploit allows for remote blind SQL injection in BBPortalS and BBsProcesS scripts. The vulnerability can be found using the dork "inurl : tnews.php?op". The exploit has been tested on versions 1.5.10, 1.6.2, and 1.5.11. For version 2.0, the field names are 'user' and 'password', but the table name needs to be discovered separately. The exploit uses Perl and the LWP::UserAgent module.
Mitigation:
The vulnerability can be mitigated by applying a patch or updating to a fixed version of the software.