LiveCart Multiple Cross-Site Scripting Vulnerabilities
BID:27087
Info
LiveCart Multiple Cross-Site Scripting Vulnerabilities
| Bugtraq ID: | 27087 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-6646 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 31 2007 12:00AM |
| Updated: | May 07 2015 05:34PM |
| Credit: | DoZ <[email protected]> is credited with the discovery of these vulnerabilities. |
| Vulnerable: |
Integry Systems LiveCart 1.0.1 |
| Not Vulnerable: |
Integry Systems LiveCart 1.1 |
Discussion
LiveCart Multiple Cross-Site Scripting Vulnerabilities
LiveCart is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input.
An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
LiveCart 1.0.1 is vulnerable to these issues; other versions may also be affected.
LiveCart is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input.
An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
LiveCart 1.0.1 is vulnerable to these issues; other versions may also be affected.
Exploit / POC
LiveCart Multiple Cross-Site Scripting Vulnerabilities
Attackers can exploit these issues by enticing an unsuspecting user to follow a malicious URI.
The follow proof-of-concept URIs are available:
http://www.example.com/user/remindPassword?return=XSS
http://www.example.com/category?id=1&q=XSS
http://www.example.com/order?return=order/XSS
http://www.example.com/user/remindComplete?email=XSS
Attackers can exploit these issues by enticing an unsuspecting user to follow a malicious URI.
The follow proof-of-concept URIs are available:
http://www.example.com/user/remindPassword?return=XSS
http://www.example.com/category?id=1&q=XSS
http://www.example.com/order?return=order/XSS
http://www.example.com/user/remindComplete?email=XSS
Solution / Fix
LiveCart Multiple Cross-Site Scripting Vulnerabilities
Solution:
The vendor released LiveCart 1.1.0 to address these issues. Please contact the vendor for information on how to obtain a fixed version.
Solution:
The vendor released LiveCart 1.1.0 to address these issues. Please contact the vendor for information on how to obtain a fixed version.
References
LiveCart Multiple Cross-Site Scripting Vulnerabilities
References:
References: