EveryAuction Auction.PL Cross-Site Scripting Vulnerability
BID:15824
Info
EveryAuction Auction.PL Cross-Site Scripting Vulnerability
| Bugtraq ID: | 15824 |
| Class: | Input Validation Error |
| CVE: |
CVE-2005-4229 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 13 2005 12:00AM |
| Updated: | Jul 09 2009 09:46PM |
| Credit: | $um$id is credited with the discovery of this vulnerability. |
| Vulnerable: |
EveryAuction EveryAuction 1.53 |
| Not Vulnerable: | |
Discussion
EveryAuction Auction.PL Cross-Site Scripting Vulnerability
EveryAuction is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied input.
An attacker may leverage this issue to run arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
EveryAuction is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied input.
An attacker may leverage this issue to run arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Exploit / POC
EveryAuction Auction.PL Cross-Site Scripting Vulnerability
Attackers must entice an unsuspecting victim to open a malicious URI.
The following example URI is available:
http://www.example.com/path/auction.pl?searchstring=[XSS]&action=search&searchtype=keyword
Attackers must entice an unsuspecting victim to open a malicious URI.
The following example URI is available:
http://www.example.com/path/auction.pl?searchstring=[XSS]&action=search&searchtype=keyword
Solution / Fix
EveryAuction Auction.PL Cross-Site Scripting Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].