J-Security Center

Title: Snitz Forums 2000 Register.ASP SQL Injection Vulnerability

Severity: HIGH

Description:

Snitz Forums 2000 is ASP-based web forum software. It runs on Microsoft Windows operating systems. Snitz is back-ended by a database and supports Microsoft Access 97/2000, SQL Server 6.5/7.0/2000 and MySQL.

It is possible for a remote attacker to inject SQL into queries made by the register.asp script. Specifically, the 'email' variable is not properly sanitized of malicious SQL instructions.

It is possible for a remote attacker to inject SQL into queries made by the register.asp script. This may be exploited to manipulate the logic of a query made by the script.

Depending on the database implementation used, this may possibly result in sensitive information in the database being disclosed to the attacker or may enable the attacker to modify data. There is also the possibility that this issue may be leveraged to exploit vulnerabilities that may exist in the underlying database.

The attacker would have to pass properly formatted SQL to the vulnerable script to exploit this issue.

This vulnerability was reported for Snitz Forum 2000 3.3.03. It is likely that earlier versions are affected.

Affected Products:

  • Snitz Forums 2000 Snitz Forums 2000 3.3.0.03

References:

Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.