eNdonesia Search Form Cross-Site Scripting Vulnerability
BID:10856
Info
eNdonesia Search Form Cross-Site Scripting Vulnerability
| Bugtraq ID: | 10856 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 04 2004 12:00AM |
| Updated: | Aug 04 2004 12:00AM |
| Credit: | Ahmad Muammar <[email protected]> disclosed this vulnerability. |
| Vulnerable: |
eNdonesia eNdonesia 8.3 |
| Not Vulnerable: | |
Discussion
eNdonesia Search Form Cross-Site Scripting Vulnerability
It is reported that eNdonesia is susceptible to a cross-site scripting vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied input prior to including it in dynamically generated web content.
As a result of this vulnerability, it is possible for a remote attacker to create a malicious link containing script code that will be executed in the browser of a legitimate user. Specifically the attacker can pass malicious HTML code as a value for the affected URI parameter supplied to 'mod.php'. All code will be executed within the context of the website running the vulnerable software.
This may allow for theft of cookie-based authentication credentials and other attacks.
Version 8.3 of the software is reported vulnerable. Other versions may also be affected.
It is reported that eNdonesia is susceptible to a cross-site scripting vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied input prior to including it in dynamically generated web content.
As a result of this vulnerability, it is possible for a remote attacker to create a malicious link containing script code that will be executed in the browser of a legitimate user. Specifically the attacker can pass malicious HTML code as a value for the affected URI parameter supplied to 'mod.php'. All code will be executed within the context of the website running the vulnerable software.
This may allow for theft of cookie-based authentication credentials and other attacks.
Version 8.3 of the software is reported vulnerable. Other versions may also be affected.
Exploit / POC
eNdonesia Search Form Cross-Site Scripting Vulnerability
No exploit is required. An example URI sufficient to exploit this vulnerability has been provided:
http://www.example.com/mod.php?mod=publisher&op=search&query=%3Cscript%3Ealert(document.cookie)%3C/script%3E
No exploit is required. An example URI sufficient to exploit this vulnerability has been provided:
http://www.example.com/mod.php?mod=publisher&op=search&query=%3Cscript%3Ealert(document.cookie)%3C/script%3E
Solution / Fix
eNdonesia Search Form Cross-Site Scripting Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
eNdonesia Search Form Cross-Site Scripting Vulnerability
References:
References:
- eNdonesia Homepage (eNdonesia)
- Multiple vulnerabilities in eNdonesia CMS (ahmad muammar
)