Small width layout Medium width layout Maximum width layout Small text Medium text Large text
     Search
Downloads Downloads Directory Directory Forums Forums Forge Forge Blogs Blogs        Marketplace Marketplace Careers Program Careers
Community › Forums Register  |  

DotNetNuke Marketplace
  Ads  
Active Modules -- Active Forums for DotNetNuke
 


  Sponsors  

Meet Our Sponsors

Salaro -- Skins and more
OnyakTech
CrystalTech Web Hosting™
Webhost4life, specialists in DNN hosting
Mad Development is a full service interactive agency focusing on the merge of design, technology, e-commerce, and affiliate marketing by providing total website solutions.
SteadyRain
 


DotNetNuke Forums
 
  Forum  General DotNetN...  Chat About It!  DNN SQL Injection Vulnerability? I.E. How did this happen?
Previous Previous
 
Next Next
New Post 5/20/2008 10:31 AM
User is offline Slavic Kozyuk
126 posts
www.ihostasp.net
9th Ranked






Re: DNN SQL Injection Vulnerability? I.E. How did this happen? 
Modified By Slavic Kozyuk  on 5/20/2008 12:33:03 PM)

We have been playing with various DNN user profile fields since this morning, and cannot reproduce this issue on a default DNN 4.8.2 deployment. We have attempted to pass various HTML tags in to user profile fields, all of them are stripped off or are not allowed to persist in the database. Obviously if the core DNN modules are susceptible to SQL injections, this is bad news. However this would not be the first time we have seen poor quality 3rd party modules causing chaos on our servers.

We are going to setup a virtual machine with Visual Studio and attach debugger to the DNN work process to step through some of the validation code, I’ll post updates if we find anything.


Affordable DotNetNuke Hosting Affordable DNN Hosting & Support - www.ihostasp.net
Slavic Kozyuk
IHOST, LLC
Call toll-free: 1.800.593.0238
 
New Post 5/20/2008 11:37 AM
User is offline Sebastian Leupold
15198 posts
www.deutschnetnuke.de
1st Ranked












Re: DNN SQL Injection Vulnerability? I.E. How did this happen? 

Dave,

I do not see any offending module atm, we will keep to investigate, if you have any additonal details, please send to security (at) dotnetnuke.com.

Thank you.


Sebastian Leupold

DeutschNetNuke dnnWerk - The DotNetNuke Experts German DotNetNuke User-Group

DotNetNuke Project UserDefinedTable
DotNetNuke Project Release Tracker
 
New Post 5/21/2008 7:10 PM
User is offline JForsythe
16 posts
10th Ranked


Re: DNN SQL Injection Vulnerability? I.E. How did this happen? 

My DNN site appears to be comprimised as well.

Here is the IIS startup failure:

[formatException: Input string was not in a correct format.]
Microsoft.VisualBasic.CompilerServices.DoubleType.Parse(String Value, NumberformatInfo Numberformat) +193
Microsoft.VisualBasic.CompilerServices.IntegerType.FromString(String Value) +96

[InvalidCastException: Cast from string "2<script src=http://www.banner82" to type 'Integer' is not valid.]
Microsoft.VisualBasic.CompilerServices.IntegerType.FromString(String Value) +211
Microsoft.VisualBasic.CompilerServices.IntegerType.FromObject(Object Value) +750
DotNetNuke.Services.Scheduling.SchedulingProvider.get_SchedulerMode() +70
DotNetNuke.Common.Global.StartScheduler() +7
DotNetNuke.Common.Global.Application_Start(Object Sender, EventArgs E) +336

The result of an improper cast for me.



I am running an older verison of DNN. I will post a list of installed components just as soon as I find the offending entries.

 

 

 
New Post 5/21/2008 7:14 PM
User is offline Sebastian Leupold
15198 posts
www.deutschnetnuke.de
1st Ranked












Re: DNN SQL Injection Vulnerability? I.E. How did this happen? 

please also state any additional web applications on your site.

Please note: the security team is currently working on a fix for issues reported by a 3rd party company, but I am not involved, i.e. can't state, if the cause of this issue will be covered. Anyhow, due to these securtiy fixes, you should consider to upgrade to DNn 4.8.3, when available shortly.


Sebastian Leupold

DeutschNetNuke dnnWerk - The DotNetNuke Experts German DotNetNuke User-Group

DotNetNuke Project UserDefinedTable
DotNetNuke Project Release Tracker
 
New Post 5/22/2008 9:43 AM
User is offline Mitch Sellers
5719 posts
www.mitchelsellers.com
3rd Ranked




Re: DNN SQL Injection Vulnerability? I.E. How did this happen? 

The offending entries in your case are in the HostSettings table.


-Mitchel Sellers
MCITP, MCPD, MCTS
CEO/Director of Development - IowaComputerGurus Inc.
LinkedIn Profile

Visit mitchelsellers.com for my mostly DNN Blog and support forum.

Visit IowaComputerGurus.com for free DNN Modules, DNN Consulting Quotes, and DNN Technical Support Services

I reccomend 3Essentials for shared hosting and BaseCamp for project management
 
Previous Previous
 
Next Next
  Forum  General DotNetN...  Chat About It!  DNN SQL Injection Vulnerability? I.E. How did this happen?
 


Forum Policy

These Discussion Forums are dedicated to the discussion of the DotNetNuke Web Application Framework.

For the benefit of the community and to protect the integrity of the project, please observe the following posting guidelines:

1. No Advertising. This includes promotion of commercial and non-commercial products or services which are not directly related to DotNetNuke.
2. Discussion or promotion of DotNetNuke product releases under a different brand name are strictly prohibited.
3. No Flaming or Trolling.
4. No Profanity, Racism, or Prejudice.
5. Site Moderators have the final word on approving/removing a thread or post or comment.
6. English language posting only, please.

 


Software Development and Integration with DNN
HNP Solutions focuses on the pragmatic use of technology and process to meet an organization's business objectives. HNP Solutions employs seasoned Enterprise and Solution Architects, Delivery Managers and QA & Business Leads. Our capabilities range from project assessments & recommendations, design & code reviews, to full program implementations. We also work with organizations in need of senior staff augmentation purposes in the areas of Enterprise and Solution architecture.
www.hnpsolutions.com
Alki Homes - Seattle, WA
Exemplary service for your Seattle Real Estate needs. It's what you deserve from your Realtor®!
www.alkihomes.com
PointClick DotNetNuke Solutions
PointClick Technologies provides high-end DNN Hosting for businesses.
PointClick.Net Hosted Solutions

DotNetNuke Corporation   Terms Of Use  Privacy Statement
DotNetNuke®, DNN®, and the DotNetNuke logo are trademarks of DotNetNuke Corporation
Hosted by MaximumASP