Typo3 Indexed Search Cross-Site Scripting Vulnerability
BID:20173
Info
Typo3 Indexed Search Cross-Site Scripting Vulnerability
| Bugtraq ID: | 20173 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 25 2006 12:00AM |
| Updated: | Sep 25 2006 09:51PM |
| Credit: | Mr. Ekkehard Gümbel is credited with the discovery of this vulnerability. |
| Vulnerable: |
Typo3 Typo3 4.0.1 Typo3 Typo3 4.0 |
| Not Vulnerable: |
Typo3 Typo3 4.0.2 |
Discussion
Typo3 Indexed Search Cross-Site Scripting Vulnerability
TYPO3 is prone to a cross-site scripting vulnerability because it fails to sufficiently sanitize user-supplied input data.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Versions 4.0 and 4.0.1 are vulnerable.
TYPO3 is prone to a cross-site scripting vulnerability because it fails to sufficiently sanitize user-supplied input data.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Versions 4.0 and 4.0.1 are vulnerable.
Exploit / POC
Typo3 Indexed Search Cross-Site Scripting Vulnerability
To exploit this issue, an attacker must entice an unsuspecting victim into following a malicious URI.
To exploit this issue, an attacker must entice an unsuspecting victim into following a malicious URI.
Solution / Fix
Typo3 Indexed Search Cross-Site Scripting Vulnerability
Solution:
TYPO3 has released version 4.0.2 to address this issue. Please see the references for more information.
Typo3 Typo3 4.0
Typo3 Typo3 4.0.1
Solution:
TYPO3 has released version 4.0.2 to address this issue. Please see the references for more information.
Typo3 Typo3 4.0
-
Typo3 TYPO3 Version 4.0.2
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.2.tar.gz?downlo ad
Typo3 Typo3 4.0.1
-
Typo3 TYPO3 Version 4.0.2
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.2.tar.gz?downlo ad
References
Typo3 Indexed Search Cross-Site Scripting Vulnerability
References:
References:
- Synnefoims Homepage (synnefoims)
- TYPO3 Security Bulletin TYPO3-20060911-1: indexed search (TYPO3)
- Typo3 v4.x: XSS in extension "Indexed Search" v2.9.0 (Moritz Naumann)