Joomla! Bugs Let Remote Users Obtain Username and Password and Other Potentially Sensitive Information
|
SecurityTracker Alert ID: 1039407 |
SecurityTracker URL: http://securitytracker.com/id/1039407
|
CVE Reference:
CVE-2017-14595, CVE-2017-14596
(Links to External Site)
|
Updated: Nov 8 2017
|
Original Entry Date: Sep 21 2017
|
Impact:
Disclosure of authentication information, Disclosure of system information, Disclosure of user information
|
Fix Available: Yes Vendor Confirmed: Yes
|
Version(s): 1.5.0 - 3.7.5; possibly also 1.5.0 - 3.8.1
|
Description:
Two vulnerabilities were reported in Joomla!. A remote user can obtain passwords on the target system. A remote user can obtain potentially sensitive information on the target system.
A remote user can send a specially crafted request to trigger an SQL query processing logic flaw and view article intro texts on the target system [CVE-2017-14595]. Versions 3.7.0 through 3.7.5 are affected.
A remote user can send a specially crafted request to exploit an input validation flaw in the LDAP authentication plugin and obtain the target username and password [CVE-2017-14596].
Dr. Johannes Dahse, RIPS Technologies GmbH, and Michal Prochaczek reported these vulnerabilities.
|
Impact:
A remote user can obtain username and password on the target system.
A remote user can obtain article intro texts on the target system.
|
Solution:
The vendor has issued a fix (3.8.0).
[Editor's note: On November 7, 2017, the vendor issued a new security advisory (20171101) for an LDAP authentication plugin vulnerability using the same CVE number (CVE-2017-14596) as advisory 20170902. The new advisory lists versions 1.5.0 through 3.8.1 as affected and version 3.8.2 as a fixed version.]
The vendor advisory is available at:
https://developer.joomla.org/security-centre.html
|
Vendor URL: developer.joomla.org/security-centre.html (Links to External Site)
|
Cause:
Access control error, Input validation error
|
Underlying OS: Linux (Any), UNIX (Any), Windows (Any)
|
|
Message History:
None.
|
Source Message Contents
|
|
[Original Message Not Available for Viewing]
|
|