好得很程序员自学网

<tfoot draggable='sEl'></tfoot>

MYRE Real Estate Mobile 2012多个缺陷 - 网站安全 - 自学

标题:MYRE Real Estate Mobile 2012|2 - Multiple Vulnerabilities 程序介绍: ============= Best solution for a professional Real Estate management software. Try MYRE Real Estate Mobile Software, Real Estate ready-to-use software best solution for a professional Real Estate management software. Try MYRE Real Estate Software, Real Estate ready-to-use software. At MYRE Real Estate Software, we offer professional solutions for your Real Estate business needs, including turn-key operations. That s right, turn-key! Start your real estate business today with MYRE Real Estate Mobile Software and get into the real estate market the same day. 具体介绍可以查阅: http://www.myrephp.com &  http://myrephp.com/realestate/1_mobile/     摘要: ========= MYREs Real Estate Mobile Application (2012 Q2)含有多个缺陷 技术分析: ======== 1.1 Multiple remote SQL Injection vulnerabilities are detected in MYREs Real Estate Mobile Application (2012 Q2). The vulnerability allows an attacker (remote) or local low privileged user account to inject/execute own sql commands on the affected application dbms. Successful exploitation of the vulnerability results in dbms & application compromise. The vulnerability is located in the listings & agent profile module with the bound vulnerable parameters userid & link_idd.   Vulnerable Module(s):                 [+] Listings > Link_IDD                 [+] Agent Profile > UserID   Vulnerable Parameter(s):                 [+] link_idd                 [+] UserID     1.2 Multiple non persistent cross site scripting vulnerabilities are detected in MYREs Real Estate Mobile Application (2012 Q2). The vulnerability allows remote attackers to hijack website customer, moderator or admin sessions with high required user inter action or local low privileged user account. Successful exploitation can result in account steal, phishing & client-side content request manipulation. The vulnerability is located in the search.php &the bound parameters bedroom1 and price2.   Vulnerable Module(s):                 [+] Search   Vulnerable Parameter(s):                 [+] bedrooms1                 [+] price2     证明测试: ================= 1.1 The SQL Injection vulnerabilities can be exploited by remote attacker without required user inter action. For demonstration or reproduce ...   PoC: http://www.2cto.com /realestate/1_mobile/listings.php?link_idd=-13+UNION%20SELECT%201,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28, 29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51--%20   http://www.2cto.com /realestate/1_mobile/agentprofile.php?userid=16+union+select[SQL-INJECTION]     1.2 The client side cross site scripting vulnerabilities can be exploited by remote attacker with medium till high required user inter action. For demonstration or reproduce ...   PoC: http://127.0.0.1:8080/realestate/1_mobile/search.php?cat_id1=1&city1=fu+&price2=%3E%22%3Ciframe+src %3Dwww.vulnerability-lab.com+onload%3Dalert%28%22VL%22%29+%3C&price1=%3E%22%3Ciframe+src%3Dwww.vulnerability-lab.com+ onload%3Dalert%28%22VL%22%29&bedrooms1=1%3E%22%3Ciframe+src%3Dwww.google.com+onload%3Dalert%28%22VL%22%29+ %3C&price1=%3E%22%3Ciframe+src%3Dwww.vulnerability-lab.com+onload%3Dalert%28%22VL%22%29&bathrooms1=0.5&order=link_id& sort=DESC&look=1&nolinks1=202-     -- VULNERABILITY RESEARCH LABORATORY TEAM Website: www.vulnerability-lab.com Mail: research@vulnerability-lab.com

查看更多关于MYRE Real Estate Mobile 2012多个缺陷 - 网站安全 - 自学的详细内容...

  阅读:36次