Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

BigTree-CMS 4.2.x < 4.2.4 Multiple Vulnerabilities

Medium

Synopsis

The version of BigTree-CMS running on the remote server is affected by multiple vulnerabilities.

Description

The version of BigTree-CMS installed on the remote host is 4.2.x prior to 4.2.4 and is affected by multiple vulnerabilities :

- A flaw exists that allows a reflected cross-site scripting (XSS) attack. This flaw exists because the 'admin/ajax/developer/extensions/file-browser.php' script does not validate input to the 'file' parameter before returning it to users. This may allow a context-dependent attacker to create a specially crafted request that would execute arbitrary script code in a user's browser session within the trust relationship between their browser and the server. (OSVDB 126074) - A flaw exists that allows a reflected XSS attack. This flaw exists because the 'admin/ajax/dashboard/integrity-check/module.php' script does not validate input to the 'id' parameter before returning it to users. This may allow a context-dependent attacker to create a specially crafted request that would execute arbitrary script code in a user's browser session within the trust relationship between their browser and the server. (OSVDB 126075) - A flaw exists that allows a reflected XSS attack. This flaw exists because the 'admin/modules/pages/view-tree.php' script does not validate input to the 'id' parameter before returning it to users. This may allow a context-dependent attacker to create a specially crafted request that would execute arbitrary script code in a user's browser session within the trust relationship between their browser and the server. (OSVDB 126076) - A flaw exists that may allow carrying out an SQL injection attack. The issue is due to the 'admin/modules/pages/view-tree.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an authenticaated remote attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data. (OSVDB 126077) - A flaw exists that may allow carrying out an SQL injection attack. The issue is due to the 'core/inc/bigtree/admin.php' script not properly sanitizing user-supplied input to the create user functionality. This may allow an authenticated remote attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data. (OSVDB 126078) - A flaw exists that may allow carrying out an SQL injection attack. The issue is due to the 'admin/ajax/pages/get-seo-score.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an authenticated remote attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data. (OSVDB 126079)

Solution

Upgrade to BigTree-CMS version 4.2.4 or later.