Gelato CMS 'Comments.php' HTML Injection Vulnerability
BID:27587
Info
Gelato CMS 'Comments.php' HTML Injection Vulnerability
| Bugtraq ID: | 27587 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-7039 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 04 2008 12:00AM |
| Updated: | May 07 2015 05:33PM |
| Credit: | Psiczn is credited with the discovery of this vulnerability. |
| Vulnerable: |
Jorge Condomí Gelato CMS 0.95 |
| Not Vulnerable: | |
Discussion
Gelato CMS 'Comments.php' HTML Injection Vulnerability
Gelato CMS is prone to an HTML-injection vulnerability because it fails to sufficiently sanitize user-supplied input data before using it in dynamically generated content.
Exploiting this issue may allow an attacker to execute HTML and script code in the context of the affected site, to steal cookie-based authentication credentials, or to control how the site is rendered to the user; other attacks are also possible.
This issue affects Gelato CMS 0.95; other versions may also be affected.
Gelato CMS is prone to an HTML-injection vulnerability because it fails to sufficiently sanitize user-supplied input data before using it in dynamically generated content.
Exploiting this issue may allow an attacker to execute HTML and script code in the context of the affected site, to steal cookie-based authentication credentials, or to control how the site is rendered to the user; other attacks are also possible.
This issue affects Gelato CMS 0.95; other versions may also be affected.
Exploit / POC
Gelato CMS 'Comments.php' HTML Injection Vulnerability
Attackers can exploit this issue via a browser.
Attackers can exploit this issue via a browser.
Solution / Fix
Gelato CMS 'Comments.php' HTML Injection Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Gelato CMS 'Comments.php' HTML Injection Vulnerability
References:
References:
- Gelato CMS Homepage (Jorge Condomí)