S9Y Serendipity BBCode Plugin HTML Injection Vulnerability
BID:13411
Info
S9Y Serendipity BBCode Plugin HTML Injection Vulnerability
| Bugtraq ID: | 13411 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 27 2005 12:00AM |
| Updated: | Apr 27 2005 12:00AM |
| Credit: | This vulnerability was announced by the vendor. |
| Vulnerable: |
S9Y Serendipity 0.8 -beta6 Snapshot S9Y Serendipity 0.8 -beta6 S9Y Serendipity 0.8 -beta5 S9Y Serendipity 0.7.1 S9Y Serendipity 0.7 beta3 S9Y Serendipity 0.7 beta1 S9Y Serendipity 0.7 -rc1 S9Y Serendipity 0.7 -beta4 S9Y Serendipity 0.7 -beta2 S9Y Serendipity 0.7 |
| Not Vulnerable: |
S9Y Serendipity 0.8 |
Discussion
S9Y Serendipity BBCode Plugin HTML Injection Vulnerability
Serendipity is affected by an HTML injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in dynamically generated content.
Attacker-supplied HTML and script code would be able to access properties of the site, potentially allowing for theft of cookie-based authentication credentials. An attacker could also exploit this issue to control how the site is rendered to the user; other attacks are also possible.
Serendipity is affected by an HTML injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in dynamically generated content.
Attacker-supplied HTML and script code would be able to access properties of the site, potentially allowing for theft of cookie-based authentication credentials. An attacker could also exploit this issue to control how the site is rendered to the user; other attacks are also possible.
Exploit / POC
S9Y Serendipity BBCode Plugin HTML Injection Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
S9Y Serendipity BBCode Plugin HTML Injection Vulnerability
Solution:
The vendor has addressed this issue in Serendipity version 0.8.
S9Y Serendipity 0.7 -rc1
S9Y Serendipity 0.7 beta1
S9Y Serendipity 0.7 beta3
S9Y Serendipity 0.7
S9Y Serendipity 0.7 -beta4
S9Y Serendipity 0.7 -beta2
S9Y Serendipity 0.7.1
S9Y Serendipity 0.8 -beta5
S9Y Serendipity 0.8 -beta6
S9Y Serendipity 0.8 -beta6 Snapshot
Solution:
The vendor has addressed this issue in Serendipity version 0.8.
S9Y Serendipity 0.7 -rc1
-
S9Y Serendipity Latest
http://www.s9y.org/12.html
S9Y Serendipity 0.7 beta1
-
S9Y Serendipity Latest
http://www.s9y.org/12.html
S9Y Serendipity 0.7 beta3
-
S9Y Serendipity Latest
http://www.s9y.org/12.html
S9Y Serendipity 0.7
-
S9Y Serendipity Latest
http://www.s9y.org/12.html
S9Y Serendipity 0.7 -beta4
-
S9Y Serendipity Latest
http://www.s9y.org/12.html
S9Y Serendipity 0.7 -beta2
-
S9Y Serendipity Latest
http://www.s9y.org/12.html
S9Y Serendipity 0.7.1
-
S9Y Serendipity Latest
http://www.s9y.org/12.html
S9Y Serendipity 0.8 -beta5
-
S9Y Serendipity Latest
http://www.s9y.org/12.html
S9Y Serendipity 0.8 -beta6
-
S9Y Serendipity Latest
http://www.s9y.org/12.html
S9Y Serendipity 0.8 -beta6 Snapshot
-
S9Y Serendipity Latest
http://www.s9y.org/12.html
References
S9Y Serendipity BBCode Plugin HTML Injection Vulnerability
References:
References:
- 0.8 Release Announcement (S9Y)
- Serendipity Homepage (S9Y)