Thinkmill KeystoneJS Multiple HTML Injection Vulnerabilities
BID:101541
Info
Thinkmill KeystoneJS Multiple HTML Injection Vulnerabilities
| Bugtraq ID: | 101541 |
| Class: | Input Validation Error |
| CVE: |
CVE-2017-15881 CVE-2017-15878 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 24 2017 12:00AM |
| Updated: | Oct 24 2017 12:00AM |
| Credit: | Sandeep Kamble |
| Vulnerable: |
Thinkmill KeystoneJS 0.3.19 Thinkmill KeystoneJS 0.3.17 |
| Not Vulnerable: |
Thinkmill KeystoneJS 4.0.0-beta.7 |
Discussion
Thinkmill KeystoneJS Multiple HTML Injection Vulnerabilities
KeystoneJS is prone to multiple HTML-injection vulnerabilities because it fails to properly sanitize user-supplied input.
Successful exploits will result in the execution of arbitrary attacker-supplied HTML and script code in the context of the affected application, potentially allowing the attacker to steal cookie-based authentication credentials or control how the page is rendered to the user. Other attacks are also possible.
KeystoneJS is prone to multiple HTML-injection vulnerabilities because it fails to properly sanitize user-supplied input.
Successful exploits will result in the execution of arbitrary attacker-supplied HTML and script code in the context of the affected application, potentially allowing the attacker to steal cookie-based authentication credentials or control how the page is rendered to the user. Other attacks are also possible.
Exploit / POC
Thinkmill KeystoneJS Multiple HTML Injection Vulnerabilities
An attacker can exploit these issues using a web browser.
An attacker can exploit these issues using a web browser.
References
Thinkmill KeystoneJS Multiple HTML Injection Vulnerabilities
References:
References:
- KeystoneJS Homepage (KeystoneJS)
- KeystoneJS Open Source Penetration Testing Report �?? Gratis 2017 (SecureLayer7)
- Reporting serval Security issues #4437 (KeystoneJS)
- Security fixes #4478 (KeystoneJS)