น้อมสำนึกในพระมหากรุณาธิคุณเป็นล้นพ้นอันหาที่สุดมิได้

Joomla! News

Joomla iF surfALERT Component "controller" File Inclusion Vulnerability

SECUNIA ADVISORY ID:
SA39526

VERIFY ADVISORY:
http://secunia.com/advisories/39526/

DESCRIPTION:
A vulnerability has been discovered in the iF surfALERT component for
Joomla, which can be exploited by malicious people to disclose
potentially sensitive information.

Input passed to the "controller" parameter in index.php (when
"option" is set to "com_if_surfalert") is not properly verified
before being used to include files. This can be exploited to include
arbitrary files from local resources via directory traversal attacks
and URL-encoded NULL bytes.

The vulnerability is confirmed in version 1.2. Other versions may
also be affected.

SOLUTION:
Edit the source code to ensure that input is properly verified.

PROVIDED AND/OR DISCOVERED BY:
AntiSecurity

ORIGINAL ADVISORY:
http://www.exploit-db.com/exploits/12291

Joomla iNetLanka Google Component "controller" File Inclusion Vulnerability

SECUNIA ADVISORY ID:
SA39525

VERIFY ADVISORY:
http://secunia.com/advisories/39525/

DESCRIPTION:
A vulnerability has been discovered in the iNetLanka Google component
for Joomla, which can be exploited by malicious people to disclose
potentially sensitive information.

Input passed to the "controller" parameter in index.php (when
"option" is set to "com_google") is not properly verified before
being used to include files. This can be exploited to include
arbitrary files from local resources via directory traversal attacks
and URL-encoded NULL bytes.

The vulnerability is confirmed in version 1.2. Other versions may
also be affected.

SOLUTION:
Edit the source code to ensure that input is properly verified.

PROVIDED AND/OR DISCOVERED BY:
AntiSecurity

ORIGINAL ADVISORY:
http://www.exploit-db.com/exploits/12290

Joomla! Q-Personel Component "katid" SQL Injection Vulnerability

SECUNIA ADVISORY ID:
SA39445

VERIFY ADVISORY:
http://secunia.com/advisories/39445/

DESCRIPTION:
Valentin has discovered a vulnerability in the Q-Personel component
for Joomla!, which can be exploited by malicious people to conduct
SQL injection attacks.

Input passed via the "katid" parameter to index.php (if "option" is
set to "com_qpersonel" and "task" is set to "qpListele") is not
properly sanitised before being used in SQL queries. This can be
exploited to manipulate SQL queries by injecting arbitrary SQL code.

The vulnerability is confirmed in version 1.0.2 (RC1). Other versions
may also be affected.

SOLUTION:
Edit the source code to ensure that input is properly sanitised.

PROVIDED AND/OR DISCOVERED BY:
Valentin

ORIGINAL ADVISORY:
http://www.xenuser.org/documents/security/qpersonel_sql.txt

Joomla! JInventory Component "controller" Local File Inclusion Vulnerability

SECUNIA ADVISORY ID:
SA39351

VERIFY ADVISORY:
http://secunia.com/advisories/39351/

DESCRIPTION:
A vulnerability has been reported in the JInventory component for
Joomla!, which can be exploited by malicious people to disclose
sensitive information.

Input passed via the "controller" parameter index.php (when "option"
is set to "com_jinventory") is not properly verified before being
used to include files. This can be exploited to include arbitrary
files from local resources via directory traversal sequences and
URL-encoded NULL bytes.

The vulnerability is reported in versions prior to 1.26.03.

SOLUTION:
Update to version 1.26.03.

PROVIDED AND/OR DISCOVERED BY:
Chip D3 Bi0s

CHANGELOG:
2010-04-08: Updated "Solution" section due to patch release. Added
version information to the "Description" section.

ORIGINAL ADVISORY:
http://extensions.joomla.org/extensions/e-commerce/shopping-cart/7951

Joomla! Shoutbox Pro Component "controller" Local File Inclusion Vulnerability

SECUNIA ADVISORY ID:
SA39352

VERIFY ADVISORY:
http://secunia.com/advisories/39352/

DESCRIPTION:
A vulnerability has been reported in the Shoutbox Pro component for
Joomla!, which can be exploited by malicious people to disclose
sensitive information.

Input passed via the "controller" parameter to index.php (when
"option" is set to "com_shoutbox") is not properly verified before
being used to include files. This can be exploited to include
arbitrary files from local resources via directory traversal
sequences and URL-encoded NULL bytes.

SOLUTION:
Edit the source code to ensure that input is properly verified.

PROVIDED AND/OR DISCOVERED BY:
Vrs-hCk

Joomla! Datafeeds Component "controller" Local File Inclusion Vulnerability

SECUNIA ADVISORY ID:
SA39360

VERIFY ADVISORY:
http://secunia.com/advisories/39360/

DESCRIPTION:
A vulnerability has been discovered in the Datafeeds component for
Joomla!, which can be exploited by malicious people to disclose
sensitive information.

Input passed via the "controller" parameter to index.php (when
"option" is set to "com_datafeeds") is not properly verified before
being used to include files. This can be exploited to include
arbitrary files from local resources via directory traversal
sequences and URL-encoded NULL bytes.

The vulnerability is confirmed in build 880. Other versions may also
be affected.

SOLUTION:
Edit the source code to ensure that input is properly verified.

PROVIDED AND/OR DISCOVERED BY:
AntiSecurity

RECENT ARTICLE