Simple Machines X-Forwarded-For HTML Injection Vulnerability
BID:16841
Info
Simple Machines X-Forwarded-For HTML Injection Vulnerability
| Bugtraq ID: | 16841 |
| Class: | Input Validation Error |
| CVE: |
CVE-2006-0896 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 24 2006 12:00AM |
| Updated: | Apr 10 2006 10:52PM |
| Credit: | Discovery of this vulnerability is credited to Aliaksandr Hartsuyeu (eVuln.com). |
| Vulnerable: |
Simple Machines SMF 1.0.6 Simple Machines SMF 1.0.5 Simple Machines SMF 1.0.4 Simple Machines SMF 1.0.2 Simple Machines SMF 1.0 -beta5p Simple Machines SMF 1.0 -beta4p Simple Machines SMF 1.0 -beta4.1 |
| Not Vulnerable: |
Simple Machines SMF 1.0.7 |
Discussion
Simple Machines X-Forwarded-For HTML Injection Vulnerability
Simple Machines is prone to an HTML-injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
Attacker-supplied HTML and script code would be executed in the context of the affected website, potentially allowing for the theft of cookie-based authentication credentials. An attacker could also exploit this issue to control how the site is rendered to the user; other attacks are also possible.
This issue is reported to affect Simple Machines version 1.0.6 and earlier.
Simple Machines is prone to an HTML-injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
Attacker-supplied HTML and script code would be executed in the context of the affected website, potentially allowing for the theft of cookie-based authentication credentials. An attacker could also exploit this issue to control how the site is rendered to the user; other attacks are also possible.
This issue is reported to affect Simple Machines version 1.0.6 and earlier.
Exploit / POC
Simple Machines X-Forwarded-For HTML Injection Vulnerability
This issue may be exploited through a web browser.
This issue may be exploited through a web browser.
Solution / Fix
Simple Machines X-Forwarded-For HTML Injection Vulnerability
Solution:
The vendor has released version 1.0.7 to address this issue.
Simple Machines SMF 1.0 -beta4.1
Simple Machines SMF 1.0 -beta4p
Simple Machines SMF 1.0 -beta5p
Simple Machines SMF 1.0.2
Simple Machines SMF 1.0.4
Simple Machines SMF 1.0.5
Simple Machines SMF 1.0.6
Solution:
The vendor has released version 1.0.7 to address this issue.
Simple Machines SMF 1.0 -beta4.1
-
Simple Machines SMF 1.0.7
http://www.simplemachines.org/download/
Simple Machines SMF 1.0 -beta4p
-
Simple Machines SMF 1.0.7
http://www.simplemachines.org/download/
Simple Machines SMF 1.0 -beta5p
-
Simple Machines SMF 1.0.7
http://www.simplemachines.org/download/
Simple Machines SMF 1.0.2
-
Simple Machines SMF 1.0.7
http://www.simplemachines.org/download/
Simple Machines SMF 1.0.4
-
Simple Machines SMF 1.0.7
http://www.simplemachines.org/download/
Simple Machines SMF 1.0.5
-
Simple Machines SMF 1.0.7
http://www.simplemachines.org/download/
Simple Machines SMF 1.0.6
-
Simple Machines SMF 1.0.7
http://www.simplemachines.org/download/
References
Simple Machines X-Forwarded-For HTML Injection Vulnerability
References:
References:
- Simple Machines Forum - SMF 'X-Forwarded-For' XSS Vulnerability (Aliaksandr Hartsuyeu (eVuln.com))
- Simple Machines SMF Homepage (Simple Machines)
- SMF 1.0.7 and patch for 1.1 RC2 released (Simple Machines)
- SMF Community Forum (Simple Machines)