CommuniGate Pro Web Mail HTML Injection Vulnerability
BID:23950
Info
CommuniGate Pro Web Mail HTML Injection Vulnerability
| Bugtraq ID: | 23950 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-2718 |
| Remote: | Yes |
| Local: | No |
| Published: | May 12 2007 12:00AM |
| Updated: | May 07 2015 05:39PM |
| Credit: | Alla Bezroutchko is credited with the discovery of this vulnerability. |
| Vulnerable: |
Stalker Communigate Pro 5.1.8 Stalker Communigate Pro 5.0.8 Stalker Communigate Pro 5.0.7 Stalker Communigate Pro 5.0.6 Stalker Communigate Pro 4.3 c3 Stalker Communigate Pro 4.3 c2 Stalker Communigate Pro 4.3 c1 Stalker Communigate Pro 4.0.6 Stalker Communigate Pro 4.0.3 Stalker Communigate Pro 4.0.2 Stalker Communigate Pro 4.0.1 Stalker Communigate Pro 4.0 b3 Stalker Communigate Pro 4.0 b2 Stalker Communigate Pro 4.0 .1b2 Stalker Communigate Pro 3.4 b3 Stalker Communigate Pro 3.3.2 Stalker Communigate Pro 3.3 b2 Stalker Communigate Pro 3.3 b1 Stalker Communigate Pro 3.2.4 Stalker Communigate Pro 3.2 b7 Stalker Communigate Pro 3.2 b5 Stalker Communigate Pro 3.1 |
| Not Vulnerable: |
Stalker Communigate Pro 5.1.9 |
Discussion
CommuniGate Pro Web Mail HTML Injection Vulnerability
CommuniGate Pro is prone to an HTML-injection vulnerability because it fails to sufficiently sanitize user-supplied input.
Exploiting this issue may allow an attacker to execute HTML and script code in the context of the affected site, to steal cookie-based authentication credentials, or to control how the site is rendered to the user; other attacks are also possible.
CommuniGate Pro 5.1.8 and earlier versions are vulnerable to this issue.
Note that this issue is present only when using Microsoft Internet Explorer.
CommuniGate Pro is prone to an HTML-injection vulnerability because it fails to sufficiently sanitize user-supplied input.
Exploiting this issue may allow an attacker to execute HTML and script code in the context of the affected site, to steal cookie-based authentication credentials, or to control how the site is rendered to the user; other attacks are also possible.
CommuniGate Pro 5.1.8 and earlier versions are vulnerable to this issue.
Note that this issue is present only when using Microsoft Internet Explorer.
Exploit / POC
CommuniGate Pro Web Mail HTML Injection Vulnerability
Attackers can use an email client to exploit this issue.
A sample exploit has been provided:
Attackers can use an email client to exploit this issue.
A sample exploit has been provided:
Solution / Fix
CommuniGate Pro Web Mail HTML Injection Vulnerability
Solution:
The vendor has released CommuniGate Pro 5.1.9 to address this issue; please see the references for details.
Stalker Communigate Pro 3.1
Stalker Communigate Pro 3.2 b7
Stalker Communigate Pro 3.2 b5
Stalker Communigate Pro 3.2.4
Stalker Communigate Pro 3.3 b2
Stalker Communigate Pro 3.3 b1
Stalker Communigate Pro 3.3.2
Stalker Communigate Pro 3.4 b3
Stalker Communigate Pro 4.0 .1b2
Stalker Communigate Pro 4.0 b3
Stalker Communigate Pro 4.0 b2
Stalker Communigate Pro 4.0.1
Stalker Communigate Pro 4.0.2
Stalker Communigate Pro 4.0.3
Stalker Communigate Pro 4.0.6
Stalker Communigate Pro 4.3 c1
Stalker Communigate Pro 4.3 c3
Stalker Communigate Pro 4.3 c2
Stalker Communigate Pro 5.0.6
Stalker Communigate Pro 5.0.7
Stalker Communigate Pro 5.0.8
Stalker Communigate Pro 5.1.8
Solution:
The vendor has released CommuniGate Pro 5.1.9 to address this issue; please see the references for details.
Stalker Communigate Pro 3.1
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 3.2 b7
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 3.2 b5
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 3.2.4
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 3.3 b2
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 3.3 b1
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 3.3.2
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 3.4 b3
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 4.0 .1b2
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 4.0 b3
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 4.0 b2
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 4.0.1
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 4.0.2
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 4.0.3
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 4.0.6
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 4.3 c1
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 4.3 c3
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 4.3 c2
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 5.0.6
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 5.0.7
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 5.0.8
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
Stalker Communigate Pro 5.1.8
-
Stalker CGatePro-Linux-Intel.tgz
http://www.communigate.com/pub/CommuniGatePro/CGatePro-Linux-Intel.tgz
References
CommuniGate Pro Web Mail HTML Injection Vulnerability
References:
References:
- Communigate Pro Homepage (Stalker)
- CommuniGate Pro Revision History: 5.1.9 11-May-2007 (Stalker)
- Full Disclosure: CommuniGate Pro web mail persistent cross-site scripting vulner (Alla Bezroutchko
)