<?xml version="1.0"?>
<rss version="2.0">
  <channel>
    <title>PHPDeveloper.org</title>
    <link>http://www.phpdeveloper.org</link>
    <description>Up-to-the Minute PHP News, views and community</description>
    <language>en-us</language>
    <pubDate>Mon, 20 May 2013 01:54:09 -0500</pubDate>
    <ttl>30</ttl>
    <item>
      <title><![CDATA[Secunia.com: CMS Mundo SQL Injection and File Upload Vulnerabilities]]></title>
      <guid>http://www.phpdeveloper.org/news/5596</guid>
      <link>http://www.phpdeveloper.org/news/5596</link>
      <description><![CDATA[<p>
Two new security issues have been posted for anyone using the <a href="http://www.hotwebscripts.com/index.php?mod=webshop&function=showDetails&id=76">CMS Mundo</a> software - one allowing attackers to perform a SQL injection and the other an issue with the file upload functionality.
</p>
<p>
The details for these two issues can be found <a href="http://secunia.com/advisories/20362/">here on the Secunia</a> site:
</p>
<blockquote>
<p>
Secunia Research has discovered two vulnerabilities in CMS Mundo, which can be exploited by malicious people to conduct SQL injection attacks and compromise a vulnerable system.
</p>
<p>
Input passed to the "username" parameter in "controlpanel/" during login isn't properly sanitised before being used in a SQL query. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.
</p>
<p>
An input validation error in the image upload handling in the image gallery can be exploited to upload arbitrary PHP scripts to a predictable location inside the web root.
</p>
</blockquote>
<p>
There is already a patch (version 1.0 build 008) for <a href="http://secunia.com/advisories/20362/">this issue</a>, and all users of <a href="http://www.hotwebscripts.com/index.php?mod=webshop&function=showDetails&id=76">CMS Mundo</a> are encouraged to update immediately so as not to fall victim to these issues.
</p>]]></description>
      <pubDate>Thu, 15 Jun 2006 06:18:05 -0500</pubDate>
    </item>
  </channel>
</rss>
