RSSOwl Atom Feed Script HTML Injection Vulnerability
BID:20110
CVE-2006-4760 |Info
RSSOwl Atom Feed Script HTML Injection Vulnerability
| Bugtraq ID: | 20110 |
| Class: | Input Validation Error |
| CVE: |
CVE-2006-4760 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 19 2006 12:00AM |
| Updated: | Aug 06 2007 08:54PM |
| Credit: | SPI Dynamics is credited with the discovery of this vulnerability. |
| Vulnerable: |
RSSOwl RSSOwl 1.2.2 RSSOwl RSSOwl 1.2.1 |
| Not Vulnerable: |
RSSOwl RSSOwl 1.2.3 |
Discussion
RSSOwl Atom Feed Script HTML Injection Vulnerability
RSSOwl is prone to an HTML-injection vulnerability because the application fails to properly sanitize user-supplied input before using it in dynamically generated content.
Attacker-supplied HTML and script code would run in the context of the My Computer folder, potentially allowing an attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user. Other attacks are also possible.
Versions prior to RSSOwl 1.2.3 are vulnerable.
RSSOwl is prone to an HTML-injection vulnerability because the application fails to properly sanitize user-supplied input before using it in dynamically generated content.
Attacker-supplied HTML and script code would run in the context of the My Computer folder, potentially allowing an attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user. Other attacks are also possible.
Versions prior to RSSOwl 1.2.3 are vulnerable.
Exploit / POC
RSSOwl Atom Feed Script HTML Injection Vulnerability
Attackers can exploit this issue via a browser.
Attackers can exploit this issue via a browser.
Solution / Fix
RSSOwl Atom Feed Script HTML Injection Vulnerability
Solution:
The vendor reported that this issue is addressed in RSSOwl 1.2.3. Please see the references for more information.
Solution:
The vendor reported that this issue is addressed in RSSOwl 1.2.3. Please see the references for more information.
References
RSSOwl Atom Feed Script HTML Injection Vulnerability
References:
References:
- Feed Security and RSSOwl - Part 2 (RSSOwl)
- RSSOwl Home Page (RSSOwl)