Vulnerablities in CMS Made Simple 1.6.6?

General project discussion. NOT for help questions.
Post Reply
Maarten
Forum Members
Forum Members
Posts: 84
Joined: Sat May 06, 2006 9:52 am

Vulnerablities in CMS Made Simple 1.6.6?

Post by Maarten »

Hi I just came across a Vulnerablities claim targetted on CMS Made Simple 1.6.6. I tried to reproduce it myself but I was unsuccesfull. Maybe because of the secure server configuration.
################################################################

#      .___            __          _______      .___        #

#    __| _/____ _______|  | __ ____ \  _  \    __| _/____    #

#    / __ |\__  \\_  __ \  |/ // ___\/  /_\  \  / __ |/ __ \  #

#  / /_/ | / __ \|  | \/    \_____  /\_____|\____\  #

#        \/                  \/            \/                #

#                  ___________  ______  _  __                #

#                _/ ___\_  __ \_/ __ \ \/ \/ /                #

#                \  \___|  | \/\  ___/\    /                #

#                  \___  >__|    \___  >\/\_/                  #

#      est.2007        \/            \/  forum.darkc0de.com  #

################################################################

# Greetz to all Darkc0de ,AI,ICW, AH Memebers

# Shoutz to r45c4l,j4ckh4x0r,silic0n,smith,baltazar,d3hydr8,FB1H2S, lowlz,Eberly,Sumit,

#

# Author: Beenu Arora

#

# Home  : www.BeenuArora.com

#

# Email : beenudel1986@gmail.com

#

# Share the c0de!

#

################################################################

#

# Exploit: Multiple Vulnerablities in cmsmadesimple

#

# AppSite: http://www.cmsmadesimple.com/

#

# Tested Version : 1.6.6

# XSS

#

# POC:-http://localhost/cmsmadesimple/index.ph ... ert('XSS')

#

#

#

# Multiple Local File Inclusion

#

# Sample URL:

# POC:-http://server/cmsmadesimple/index.php?m ... eturnid=39

#

#

################################################################
RonnyK
Support Guru
Support Guru
Posts: 4962
Joined: Wed Oct 25, 2006 8:29 pm
Location: Raalte, the Netherlands

Re: Vulnerablities in CMS Made Simple 1.6.6?

Post by RonnyK »

Maarten,

thanks for the info.. The modifications for these fixes were already made in SVN last Friday, as the report was known by then. So an 1.6.7 is to be released soon, to handle these 2 reported vulnerabilities..

Ronny
Maarten
Forum Members
Forum Members
Posts: 84
Joined: Sat May 06, 2006 9:52 am

Re: Vulnerablities in CMS Made Simple 1.6.6?

Post by Maarten »

Good to hear that vulnerabilities are taken care of with such speed! Thanks for the quick update!
mw
Forum Members
Forum Members
Posts: 159
Joined: Mon Aug 25, 2008 8:38 pm
Location: Comox Valley, BC, Canada

Re: Vulnerablities in CMS Made Simple 1.6.6?

Post by mw »

RonnyK wrote: Maarten,

thanks for the info.. The modifications for these fixes were already made in SVN last Friday, as the report was known by then. So an 1.6.7 is to be released soon, to handle these 2 reported vulnerabilities..

Ronny
Looking at the sample url it contains "boot.ini" in the string, can I assume this exploit is limited to a windows installation?
iNSiPiD

Re: Vulnerablities in CMS Made Simple 1.6.6?

Post by iNSiPiD »

Hiya, just downloaded 1.6.7 and 1.6.6 to perform a slipstream install from 1.6.5.

In extracting cmsmadesimple-base-diff-1.6.6-1.6.7.tar there appear to be some redundant files. All are 0kb in size and look like they were accidetnally included in root?
  • action.savetoolbar.php
    function.admin_toolbar.php
    safari
    toolbarpanel.tpl
Would appreciate some confirmation before I proceed with the upgrade.

Thank you.

iNSiPiD
reneh
Dev Team Member
Dev Team Member
Posts: 446
Joined: Tue Nov 28, 2006 8:39 pm
Location: Norway

Re: Vulnerablities in CMS Made Simple 1.6.6?

Post by reneh »

Yes these files is leftovers and a bug in make release script included these. (should be ok for future releases)
So these files are harmless.
I'm not sure if you find other problems with this packet - if so you can use one of the other packets for upgrade...
As far I know its ONLY the cmsmadesimple-base-diff-1.6.6-1.6.7.tar.gz that contains thes extra files.
ReneH 8-)
A search will save you hours waiting for an answer! Image
reneh
Dev Team Member
Dev Team Member
Posts: 446
Joined: Tue Nov 28, 2006 8:39 pm
Location: Norway

Re: Vulnerablities in CMS Made Simple 1.6.6?

Post by reneh »

ReneH 8-)
A search will save you hours waiting for an answer! Image
iNSiPiD

Re: Vulnerablities in CMS Made Simple 1.6.6?

Post by iNSiPiD »

Cheers, reneh. Ever vigilant. :)
Post Reply

Return to “General Discussion”