Drupal Multiple Cross Site Scripting and Request Forgery Vulnerabilities
BID:28916
Info
Drupal Multiple Cross Site Scripting and Request Forgery Vulnerabilities
| Bugtraq ID: | 28916 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-1977 CVE-2008-1976 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 23 2008 12:00AM |
| Updated: | Jul 05 2016 10:01PM |
| Credit: | Stéphane Corlosquet (scor) of the Drupal security team |
| Vulnerable: |
Drupal Localizer 5.x 3.3 Drupal Localizer 5.x 2.x-dev Drupal Localizer 5.x 1.10 Drupal Internationalization 6.x 1.x-dev Drupal Internationalization 5.x 2.2 Drupal Internationalization 5.x 1.x-dev |
| Not Vulnerable: |
Drupal Localizer 5.x 3.4 Drupal Localizer 5.x 2.1 Drupal Localizer 5.x 1.11 Drupal Internationalization 6.x 1.0-beta1 Drupal Internationalization 5.x 2.3 Drupal Internationalization 5.x 1.1 |
Discussion
Drupal Multiple Cross Site Scripting and Request Forgery Vulnerabilities
The applications are prone to multiple cross-site scripting vulnerabilities because the software fails to sufficiently sanitize user-supplied input. The Internationalization module is also prone to cross-site request forgery attacks while performing node translations.
An attacker may leverage the cross-site scripting issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks. The attacker can exploit the cross-site request-forgery issue by tricking a victim into following a specially crafted HTTP request designed to perform some action on the attacker's behalf using a victim's currently active session.
The following versions are affected:
Internationalization (i18n) for Drupal 5.x before Internationalization 5.x-2.3 and 5.x-1.1
Internationalization (i18n) for Drupal 6.x before Internationalization 6.x-1.0-beta1
Localizer for Drupal 5.x before Localizer 5.x-3.4, 5.x-2.1 and 5.x-1.11
The applications are prone to multiple cross-site scripting vulnerabilities because the software fails to sufficiently sanitize user-supplied input. The Internationalization module is also prone to cross-site request forgery attacks while performing node translations.
An attacker may leverage the cross-site scripting issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks. The attacker can exploit the cross-site request-forgery issue by tricking a victim into following a specially crafted HTTP request designed to perform some action on the attacker's behalf using a victim's currently active session.
The following versions are affected:
Internationalization (i18n) for Drupal 5.x before Internationalization 5.x-2.3 and 5.x-1.1
Internationalization (i18n) for Drupal 6.x before Internationalization 6.x-1.0-beta1
Localizer for Drupal 5.x before Localizer 5.x-3.4, 5.x-2.1 and 5.x-1.11
Exploit / POC
Drupal Multiple Cross Site Scripting and Request Forgery Vulnerabilities
To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI.
To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI.
Solution / Fix
Drupal Multiple Cross Site Scripting and Request Forgery Vulnerabilities
Solution:
The vendor has released updates. Please see the references for details.
Solution:
The vendor has released updates. Please see the references for details.
References
Drupal Multiple Cross Site Scripting and Request Forgery Vulnerabilities
References:
References: