Annuaire 1Two Index.PHP Cross-Site Scripting Vulnerability
BID:13961
Info
Annuaire 1Two Index.PHP Cross-Site Scripting Vulnerability
| Bugtraq ID: | 13961 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 14 2005 12:00AM |
| Updated: | Jun 14 2005 12:00AM |
| Credit: | Sylvain Thual aka An0nym0uS is credited with the discovery of these vulnerabilities. |
| Vulnerable: |
1two.org Annuaire 1Two 1.1 1two.org Annuaire 1Two 1.0 |
| Not Vulnerable: |
1two.org Annuaire 1Two 2.0 |
Discussion
Annuaire 1Two Index.PHP Cross-Site Scripting Vulnerability
Annuaire 1Two is prone to a cross-site scripting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user in the context of the affected site. This may facilitate the theft of cookie-based authentication credentials as well as other attacks.
Annuaire 1Two is prone to a cross-site scripting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user in the context of the affected site. This may facilitate the theft of cookie-based authentication credentials as well as other attacks.
Exploit / POC
Annuaire 1Two Index.PHP Cross-Site Scripting Vulnerability
No exploit is required.
The following proof of concept URI is available:
http://www.example.com/index.php?id=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
No exploit is required.
The following proof of concept URI is available:
http://www.example.com/index.php?id=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
Solution / Fix
Annuaire 1Two Index.PHP Cross-Site Scripting Vulnerability
Solution:
The vendor has reportedly addressed this issue in Annuaire 1Two version 2.0; this has not been confirmed by Symantec or the vendor.
Solution:
The vendor has reportedly addressed this issue in Annuaire 1Two version 2.0; this has not been confirmed by Symantec or the vendor.
References
Annuaire 1Two Index.PHP Cross-Site Scripting Vulnerability
References:
References:
- *Annuaire 1Two v1.0* (hackisknowledge)
- 1Two Scripts (1two.org)