H-Sphere WebShell Login.PHP Cross-Site Scripting Vulnerability
BID:20532
Info
H-Sphere WebShell Login.PHP Cross-Site Scripting Vulnerability
| Bugtraq ID: | 20532 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 14 2006 12:00AM |
| Updated: | Oct 16 2006 06:09PM |
| Credit: | b0rizQ is credited with the discovery of this vulnerability. |
| Vulnerable: |
Positive Software Corporation H-Sphere 2.5.1 Beta 1 Positive Software Corporation H-Sphere 2.5.1 Positive Software Corporation H-Sphere 2.4 Positive Software Corporation H-Sphere 2.3 RC3 Positive Software Corporation H-Sphere 2.2 Positive Software Corporation H-Sphere 2.1 Positive Software Corporation H-Sphere 2.0 6 Positive Software Corporation H-Sphere 2.0 5 Positive Software Corporation H-Sphere 2.0 Positive Software Corporation H-Sphere 1.5 |
| Not Vulnerable: | |
Discussion
H-Sphere WebShell Login.PHP Cross-Site Scripting Vulnerability
H-Sphere WebShell is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied input.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Specific information regarding affected versions of the software is not currently available; this BID will be updated as more information is disclosed.
H-Sphere WebShell is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied input.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Specific information regarding affected versions of the software is not currently available; this BID will be updated as more information is disclosed.
Exploit / POC
H-Sphere WebShell Login.PHP Cross-Site Scripting Vulnerability
To exploit this issue, an attacker must entice an unsuspecting victim into following a malicious URI.
The following proof-of-concept URI is available:
To exploit this issue, an attacker must entice an unsuspecting victim into following a malicious URI.
The following proof-of-concept URI is available:
Solution / Fix
H-Sphere WebShell Login.PHP Cross-Site Scripting Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
References
H-Sphere WebShell Login.PHP Cross-Site Scripting Vulnerability
References:
References:
- H-Sphere Homepage (Positive Software)