"DUdirectory Pro is a professional Web Links Directory and Rating system. Backed-end by MS SQL Server database and organized in an unlimited number of nested categories and sub categories, DUdirectory Pro can store unlimited number of links."
Flaws in user input validation makes DUPortal Pro vulnerable to SQL Injection attacks.
Vulnerable Systems:
* DUPortal Pro version 3.4 and prior.
Multiple SQL injection vulnerabilities have been discovered in cat.asp, default.asp and detail.asp files. The following URLs will list all the possible SQL injection vectors: http:/[host]/[path]/cat.asp?iChannel='SQL_INJECTION'
http:/[host]/[path]/cat.asp?nChannel='SQL_INJECTION'
http:/[host]/[path]/default.asp?iCat='SQL_INJECTION'
http:/[host]/[path]/default.asp?iChannel='SQL_INJECTION'
http:/[host]/[path]/default.asp?nChannel='SQL_INJECTION'
http:/[host]/[path]/detail.asp?iData='SQL_INJECTION'
http:/[host]/[path]/detail.asp?iCat='SQL_INJECTION'
http:/[host]/[path]/detail.asp?iChannel='SQL_INJECTION'
http:/[host]/[path]/detail.asp?nChannel='SQL_INJECTION'