Novell GroupWise WebAccess Multiple Cross Site Scripting Vulnerabilities
BID:27582
Info
Novell GroupWise WebAccess Multiple Cross Site Scripting Vulnerabilities
| Bugtraq ID: | 27582 |
| Class: | Input Validation Error |
| CVE: |
CVE-2006-4220 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 31 2008 12:00AM |
| Updated: | Feb 04 2008 09:06PM |
| Credit: | Frederic Loudet and Brian Martin discovered these vulnerabilities. |
| Vulnerable: |
Novell Groupwise 7.0 Novell Groupwise 6.5.7 Novell Groupwise 7.0.0 SP2 Novell Groupwise 7.0.0 SP1 Novell Groupwise 5.57e |
| Not Vulnerable: |
Novell Groupwise 7.0.0 SP3 |
Discussion
Novell GroupWise WebAccess Multiple Cross Site Scripting Vulnerabilities
Novell GroupWise WebAccess is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input.
Exploiting these issues may allow an attacker to perform cross-site scripting attacks on unsuspecting users in the context of the affected website. As a result, the attacker may be able to steal cookie-based authentication credentials and to launch other attacks.
Novell GroupWise WebAccess 7 is vulnerable; other versions may also be affected.
Novell GroupWise WebAccess is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input.
Exploiting these issues may allow an attacker to perform cross-site scripting attacks on unsuspecting users in the context of the affected website. As a result, the attacker may be able to steal cookie-based authentication credentials and to launch other attacks.
Novell GroupWise WebAccess 7 is vulnerable; other versions may also be affected.
Exploit / POC
Novell GroupWise WebAccess Multiple Cross Site Scripting Vulnerabilities
To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI.
The following proof-of-concept URIs are available:
http://www.example.com/servlet/webacc?Error=[XSS]
http://www.example.com/servlet/webacc?User.html=[XSS]
To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI.
The following proof-of-concept URIs are available:
http://www.example.com/servlet/webacc?Error=[XSS]
http://www.example.com/servlet/webacc?User.html=[XSS]
Solution / Fix
Novell GroupWise WebAccess Multiple Cross Site Scripting Vulnerabilities
Solution:
The vendor released fixes to address these issues. Please see the references for more information.
Solution:
The vendor released fixes to address these issues. Please see the references for more information.
References
Novell GroupWise WebAccess Multiple Cross Site Scripting Vulnerabilities
References:
References:
- GroupWise 7 Support Pack 3 Public Beta (Novell)
- Novell GroupWise Homepage (Novell)