phpBB Avatar Upload HTML Injection Vulnerability
BID:15170
Info
phpBB Avatar Upload HTML Injection Vulnerability
| Bugtraq ID: | 15170 |
| Class: | Input Validation Error |
| CVE: |
CVE-2005-3310 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 22 2005 12:00AM |
| Updated: | Mar 19 2015 09:15AM |
| Credit: | [email protected] is credited with the discovery of this vulnerability. |
| Vulnerable: |
phpBB Group phpBB 2.0.17 phpBB Group phpBB 2.0.16 phpBB Group phpBB 2.0.15 phpBB Group phpBB 2.0.14 phpBB Group phpBB 2.0.13 |
| Not Vulnerable: |
phpBB phpBB 2.0.18 |
Discussion
phpBB Avatar Upload HTML Injection Vulnerability
phpBB is prone to an HTML-injection vulnerability. The application fails to properly sanitize user-supplied input before using it in dynamically generated content.
Attacker-supplied HTML and script code would be executed in the context of the affected website, potentially allowing an attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user; other attacks are also possible.
This issue occurs only when using Microsoft Internet Explorer.
phpBB is prone to an HTML-injection vulnerability. The application fails to properly sanitize user-supplied input before using it in dynamically generated content.
Attacker-supplied HTML and script code would be executed in the context of the affected website, potentially allowing an attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user; other attacks are also possible.
This issue occurs only when using Microsoft Internet Explorer.
Exploit / POC
phpBB Avatar Upload HTML Injection Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
phpBB Avatar Upload HTML Injection Vulnerability
Solution:
The vendor has acknowledged this vulnerability and will be releasing a patch in the next release (version 2.0.18).
Debian has released advisory DSA 925-1 to address various issues in phpBB. Please see the referenced advisory for more information.
Solution:
The vendor has acknowledged this vulnerability and will be releasing a patch in the next release (version 2.0.18).
Debian has released advisory DSA 925-1 to address various issues in phpBB. Please see the referenced advisory for more information.
References
phpBB Avatar Upload HTML Injection Vulnerability
References:
References: