Diigo Toolbar and Diigolet Comment Feature HTML Injection and Information Disclosure Vulnerabilities
BID:29611
Info
Diigo Toolbar and Diigolet Comment Feature HTML Injection and Information Disclosure Vulnerabilities
| Bugtraq ID: | 29611 |
| Class: | Access Validation Error |
| CVE: |
CVE-2008-7184 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 20 2008 12:00AM |
| Updated: | May 07 2015 05:28PM |
| Credit: | Ferruh Mavituna |
| Vulnerable: |
Diigo Diigo Toolbar 0 |
| Not Vulnerable: | |
Discussion
Diigo Toolbar and Diigolet Comment Feature HTML Injection and Information Disclosure Vulnerabilities
Diigo Toolbar and Diigolet are prone to an HTML-injection vulnerability and an information-disclosure vulnerability when handling data via the 'comment' feature.
An attacker can exploit the HTML-injection issue to run arbitrary HTML and script code in the plugin of an unsuspecting user in the context of the domain on which a shared comment was made. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
The attacker can exploit the information-disclosure issue via successful man-in-the-middle attacks. Information harvested may aid in further attacks.
Diigo Toolbar and Diigolet are prone to an HTML-injection vulnerability and an information-disclosure vulnerability when handling data via the 'comment' feature.
An attacker can exploit the HTML-injection issue to run arbitrary HTML and script code in the plugin of an unsuspecting user in the context of the domain on which a shared comment was made. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
The attacker can exploit the information-disclosure issue via successful man-in-the-middle attacks. Information harvested may aid in further attacks.
Exploit / POC
Diigo Toolbar and Diigolet Comment Feature HTML Injection and Information Disclosure Vulnerabilities
Attackers can leverage these issues using the Diigo Toolbar plugin or readily available networking utilities.
The following example HTML-injection exploit is available:
Attackers can leverage these issues using the Diigo Toolbar plugin or readily available networking utilities.
The following example HTML-injection exploit is available:
Solution / Fix
Diigo Toolbar and Diigolet Comment Feature HTML Injection and Information Disclosure Vulnerabilities
Solution:
The vendor has reportedly addressed the HTML-injection vulnerability. Please see the references and contact the vendor for more information.
Solution:
The vendor has reportedly addressed the HTML-injection vulnerability. Please see the references and contact the vendor for more information.
References
Diigo Toolbar and Diigolet Comment Feature HTML Injection and Information Disclosure Vulnerabilities
References:
References:
- Diigo Toolbar Homepage (Diigo)
- Diigolet Homepage (Diigo)
- Diigo Toolbar - Global XSS and Information Leakage in SSL URLs ("Ferruh Mavituna"
)