Home→Descriptions→SA39310
| Secunia ID | |
| Release Date |
08 Apr 2010 |
| Criticality | |
| Solution Status |
Vendor Patch |
| Software |
ShopSystem 4.x |
| Where | |
| Impact |
Exposure of sensitive informationVulnerabilities where documents or credentials are leaked or can be revealed either locally or from remote. Manipulation of dataThis includes vulnerabilities where a user or a remote attacker can manipulate local data on a system, but not necessarily be able to gain escalated privileges or system access. The most frequent type of vulnerabilities with this impact are SQL-injection vulnerabilities, where a malicious user or person can manipulate SQL queries. |
| Description |
Valentin Hoebel has reported a vulnerability in ShopSystem, which can be exploited by malicious people to conduct SQL injection attacks. Input passed via the "id" parameter to view_image.php is not properly sanitised before being used in a SQL query. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code. |
| Solution |
A patch has been released. Contact the vendor for further information. |
| Reported by |
Valentin Hoebel |
| Original Advisory |
http://www.xenuser.org/documents/security/shopsystem_sql.txt |