MoinMoin Index.PHP Cross-Site Scripting Vulnerability
BID:23676
Info
MoinMoin Index.PHP Cross-Site Scripting Vulnerability
| Bugtraq ID: | 23676 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-2423 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 26 2007 12:00AM |
| Updated: | Mar 11 2008 12:51AM |
| Credit: | EN Douli <[email protected]> is credited with the discovery of this vulnerability. |
| Vulnerable: |
Ubuntu Ubuntu Linux 7.04 sparc Ubuntu Ubuntu Linux 7.04 powerpc Ubuntu Ubuntu Linux 7.04 i386 Ubuntu Ubuntu Linux 7.04 amd64 Ubuntu Ubuntu Linux 6.10 sparc Ubuntu Ubuntu Linux 6.10 powerpc Ubuntu Ubuntu Linux 6.10 i386 Ubuntu Ubuntu Linux 6.10 amd64 Ubuntu Ubuntu Linux 6.06 LTS sparc Ubuntu Ubuntu Linux 6.06 LTS powerpc Ubuntu Ubuntu Linux 6.06 LTS i386 Ubuntu Ubuntu Linux 6.06 LTS amd64 MoinMoin MoinMoin 1.5.7 MoinMoin MoinMoin 1.5.3 MoinMoin MoinMoin 1.5.2 Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia-64 Debian Linux 4.0 ia-32 Debian Linux 4.0 hppa Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0 |
| Not Vulnerable: | |
Discussion
MoinMoin Index.PHP Cross-Site Scripting Vulnerability
MoinMoin is prone to a cross-site scripting vulnerability because the application fails to properly sanitize user-supplied input.
An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
MoinMoin 1.5.7 is vulnerable; other versions may also be affected.
MoinMoin is prone to a cross-site scripting vulnerability because the application fails to properly sanitize user-supplied input.
An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
MoinMoin 1.5.7 is vulnerable; other versions may also be affected.
Exploit / POC
MoinMoin Index.PHP Cross-Site Scripting Vulnerability
An attacker can exploit this issue by enticing an unsuspecting user to follow a malicious URI.
The following proof-of-concept URI is available:
An attacker can exploit this issue by enticing an unsuspecting user to follow a malicious URI.
The following proof-of-concept URI is available:
Solution / Fix
MoinMoin Index.PHP Cross-Site Scripting Vulnerability
Solution:
Please see the referenced advisories for information on obtaining and applying the appropriate updates.
MoinMoin MoinMoin 1.5.2
MoinMoin MoinMoin 1.5.3
Solution:
Please see the referenced advisories for information on obtaining and applying the appropriate updates.
MoinMoin MoinMoin 1.5.2
-
Ubuntu moinmoin-common_1.5.2-1ubuntu2.3_all.deb
Ubuntu 6.06 LTS:
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moinmoin-common_1.5 .2-1ubuntu2.3_all.deb -
Ubuntu python-moinmoin_1.5.2-1ubuntu2.3_all.deb
Ubuntu 6.06 LTS:
http://security.ubuntu.com/ubuntu/pool/main/m/moin/python-moinmoin_1.5 .2-1ubuntu2.3_all.deb -
Ubuntu python2.4-moinmoin_1.5.2-1ubuntu2.3_all.deb
Ubuntu 6.06 LTS:
http://security.ubuntu.com/ubuntu/pool/main/m/moin/python2.4-moinmoin_ 1.5.2-1ubuntu2.3_all.deb
MoinMoin MoinMoin 1.5.3
-
Ubuntu moinmoin-common_1.5.3-1.1ubuntu3.1_all.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moinmoin-common_1.5 .3-1.1ubuntu3.1_all.deb -
Ubuntu moinmoin-common_1.5.3-1ubuntu1.3_all.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moinmoin-common_1.5 .3-1ubuntu1.3_all.deb -
Ubuntu python-moinmoin_1.5.3-1.1ubuntu3.1_all.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/m/moin/python-moinmoin_1.5 .3-1.1ubuntu3.1_all.deb -
Ubuntu python-moinmoin_1.5.3-1ubuntu1.3_all.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/m/moin/python-moinmoin_1.5 .3-1ubuntu1.3_all.deb -
Ubuntu python2.4-moinmoin_1.5.3-1ubuntu1.3_all.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/m/moin/python2.4-moinmoin_ 1.5.3-1ubuntu1.3_all.deb