Re: SQL injection in cookies variable

Sandro Gauci <[email protected]>
Newsgroups gmane.comp.security.websecurity,gmane.comp.security.web-applications
Message-ID <CAOHmTTpo-fEd6AK+0-XpQ+3b8EUK7AZ+Dia548JZRyeQE0Zt5w@mail.gmail.com>
Hello 65535,

The following advisory regarding OpenX and the associated demo video
described SQL injection using the cookie:

http://resources.enablesecurity.com/advisories/openx-2.6.4-multiple.txt

Any user input (in this case, any part of the HTTP request) can be
used for SQL injection if it is in some way passed to an SQL
statement. As usual, google is indeed your friend - there are various
documented cases of SQL injection through cookies :)


Sandro Gauci
Chief Consultant and Founder of EnableSecurity
Email: [email protected]
Web: http://enablesecurity.com/
PGP: 514D B10C 8C3C 15BB 2EFD  49EC 7CCD 73C5 0295 F23B



On Sun, Aug 28, 2011 at 2:47 PM, OxFFFF 1336 <[email protected]> wrote:
> Hey there,
>
> I'm doing some researchs concerning SQL injection in cookies variable and I
> want to now if there are previous papers or materials related to this.
>
> I'll be glad if you can help me with this :)
>
> Many thanx in advance,
>
> Cheers
> _______________________________________________
> The Web Security Mailing List
>
> WebSecurity RSS Feed
> http://www.webappsec.org/rss/websecurity.rss
>
> Join WASC on LinkedIn http://www.linkedin.com/e/gis/83336/4B20E4374DBA
>
> WASC on Twitter
> http://twitter.com/wascupdates
>
> [email protected]
> http://lists.webappsec.org/mailman/listinfo/websecurity_lists.webappsec.org
>
>

_______________________________________________
The Web Security Mailing List

WebSecurity RSS Feed
http://www.webappsec.org/rss/websecurity.rss

Join WASC on LinkedIn http://www.linkedin.com/e/gis/83336/4B20E4374DBA

WASC on Twitter
http://twitter.com/wascupdates

[email protected]
http://lists.webappsec.org/mailman/listinfo/websecurity_lists.webappsec.org
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.