Matt Posted July 12, 2013 Report Posted July 12, 2013 Description : MiniBB version 3.0.0 suffers from cross site scripting and remote SQL injection vulnerabilities.Author : Omar KurtSource : MiniBB 3.0.0 Cross Site Scripting / SQL Injection ? Packet StormCode : Information--------------------Name : XSS and SQL Injection Vulnerabilities in MiniBBSoftware : MiniBB 3.0.0 and possibly below.Vendor Homepage : http://www.minibb.comVulnerability Type : Cross-Site Scripting and SQL InjectionSeverity : CriticalResearcher : Omar KurtAdvisory Reference : NS-13-002Description--------------------miniBB® is a standalone, open source program for building your own Internetforum, and it's free to download. Comparing to the other forum softwareavailable on the market, miniBB just brings what it's created for: an easy,lite, and speedy quick forum.Details--------------------MiniBB is affected by XSS and SQL Injection vulnerabilities in version3.0.0.XSS: http://example.com/bb_admin.php (GET - params: forum_name,forum_group, forum_icon, whatus, forum_desc)SQL Injection:http://example.com/bb_admin.php?action=searchusers2&searchus=id&whatus='+(SELECT1FROM (SELECT SLEEP(25))A)+'You can read the full article about Cross-Site Scripting and SQL Injectionvulnerabilities from here :Cross-site Scripting (XSS):https://www.mavitunasecurity.com/crosssite-scripting-xss/SQL Injection: https://www.mavitunasecurity.com/sql-injection/Solution---------------------Advisory Timeline--------------------26/02/2013 - First contact15/03/2013 - Fix & New MiniBB version released11/07/2013 - Advisory releasedCredits--------------------It has been discovered on testing of Netsparker Web Application SecurityScanner.References--------------------Vendor Url / Patch :http://www.minibb.com/forums/news-9/minibb-3.0.1-released-stable-fixed-secured-dedicated-6059.htmlMSL Advisory Link :https://www.mavitunasecurity.com/xss-and-sql-injection-vulnerabilities-in-minibb/Netsparker Advisories :https://www.mavitunasecurity.com/netsparker-advisories/About Netsparker--------------------Netsparker® can find and report security issues such as SQL Injection andCross-site Scripting (XSS) in all web applications regardless of theplatform and the technology they are built on. Netsparker's uniquedetection and exploitation techniques allows it to be dead accurate inreporting hence it's the first and the only False Positive Free webapplication security scanner.-- Netsparker Advisories, <advisories@mavitunasecurity.com>Homepage, http://www.mavitunasecurity.com/netsparker-advisories/ Quote