vendor:
Envolution
by:
k1tk4t
7.5
CVSS
HIGH
Remote SQL Injection
CWE
Product Name: Envolution
Affected Version From: 1.0.1
Affected Version To: 1.1.2000
Patch Exists: YES
Related CWE:
CPE:
Platforms Tested:
2007
Envolution <= v1.1.0 Remote SQL Injection
This perl script exploits a remote SQL injection vulnerability in Envolution <= v1.1.0. It allows an attacker to retrieve the username and password (md5) of a specific member using their member id. The vulnerability is due to improper input validation in the 'modules.php' file. By crafting a malicious request, an attacker can inject SQL code and retrieve sensitive information from the database.
Mitigation:
The vendor has released a patch to address this vulnerability. It is recommended to update to the latest version of Envolution to mitigate this issue.