ActiveWeb Contentserver CMS Client Side Filtering Bypass Vulnerability
BID:24898
Info
ActiveWeb Contentserver CMS Client Side Filtering Bypass Vulnerability
| Bugtraq ID: | 24898 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-3017 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 13 2007 12:00AM |
| Updated: | Mar 19 2015 09:15AM |
| Credit: | RedTeam Pentesting GmbH is credited with the discovery of this vulnerability. |
| Vulnerable: |
ActiveWebSoftwares.com contentserver 5.6.2929 |
| Not Vulnerable: |
ActiveWebSoftwares.com contentserver 5.6.2964 |
Discussion
ActiveWeb Contentserver CMS Client Side Filtering Bypass Vulnerability
activeWeb contentserver is prone to a client-side input-validation vulnerability because the application fails to sufficiently sanitize user-supplied data.
An attacker can exploit these input-validation vulnerabilities to perform various attacks (e.g. cross-site scripting, SQL injection, etc.).
activeWeb contentserver is prone to a client-side input-validation vulnerability because the application fails to sufficiently sanitize user-supplied data.
An attacker can exploit these input-validation vulnerabilities to perform various attacks (e.g. cross-site scripting, SQL injection, etc.).
Exploit / POC
ActiveWeb Contentserver CMS Client Side Filtering Bypass Vulnerability
To exploit this issue, attackers must use the Java applet editor and a tool for dynamically modifying HTTP requests.
http://127.0.0.1/path/search?q=%22%3E%3Cscript%3Ealert%28%27bl4ck%27%29%3C%2Fscript%3E
To exploit this issue, attackers must use the Java applet editor and a tool for dynamically modifying HTTP requests.
http://127.0.0.1/path/search?q=%22%3E%3Cscript%3Ealert%28%27bl4ck%27%29%3C%2Fscript%3E
Solution / Fix
ActiveWeb Contentserver CMS Client Side Filtering Bypass Vulnerability
Solution:
Reports indicate that contentserver 5.6.2964 is not affected by these issues, but Symantec was unable to verify this information. Please contact the vendor for more information.
Solution:
Reports indicate that contentserver 5.6.2964 is not affected by these issues, but Symantec was unable to verify this information. Please contact the vendor for more information.
References
ActiveWeb Contentserver CMS Client Side Filtering Bypass Vulnerability
References:
References:
- Vendor Homepage (contentserver activeWeb)
- Advisory: ActiveWeb Contentserver CMS Clientside Filtering of Page Editor Conten (RedTeam Pentesting GmbH)