Business Objects WebIntelligence Remote File Name HTML Injection Vulnerability
BID:11209
Info
Business Objects WebIntelligence Remote File Name HTML Injection Vulnerability
| Bugtraq ID: | 11209 |
| Class: | Input Validation Error |
| CVE: |
CVE-2004-0534 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 17 2004 12:00AM |
| Updated: | Jul 12 2009 07:06AM |
| Credit: | Discovery of this issue is credited to Corsaire Limited. |
| Vulnerable: |
Business Objects WebIntelligence 2.7.4 Business Objects WebIntelligence 2.7.3 Business Objects WebIntelligence 2.7.2 Business Objects WebIntelligence 2.7.1 Business Objects WebIntelligence 2.7 Business Objects InfoView 5.1.8 Business Objects InfoView 5.1.7 Business Objects InfoView 5.1.6 Business Objects InfoView 5.1.5 Business Objects InfoView 5.1.4 |
| Not Vulnerable: | |
Discussion
Business Objects WebIntelligence Remote File Name HTML Injection Vulnerability
Reportedly Business Objects WebIntelligence is affected by a remote file name HTML injection vulnerability. This issue is due to a failure to sanitize file names prior to including them in dynamic web page content.
An attacker may leverage this issue to execute arbitrary HTML and script code in the browser of an unsuspecting user, facilitating theft of cookie based authentication credentials. Other attacks are also possible.
Reportedly Business Objects WebIntelligence is affected by a remote file name HTML injection vulnerability. This issue is due to a failure to sanitize file names prior to including them in dynamic web page content.
An attacker may leverage this issue to execute arbitrary HTML and script code in the browser of an unsuspecting user, facilitating theft of cookie based authentication credentials. Other attacks are also possible.
Exploit / POC
Business Objects WebIntelligence Remote File Name HTML Injection Vulnerability
No exploit is required to leverage this issue.
No exploit is required to leverage this issue.
Solution / Fix
Business Objects WebIntelligence Remote File Name HTML Injection Vulnerability
Solution:
The vendor has released patches dealing with this issue. Users are recommended to contact the vendor for patch and update availability.
Solution:
The vendor has released patches dealing with this issue. Users are recommended to contact the vendor for patch and update availability.
References
Business Objects WebIntelligence Remote File Name HTML Injection Vulnerability
References:
References:
- Vendor Homepage (Business Objects)
- WebIntelligence Product Page (Business Objects)