xt:Commerce Session Fixation and Cross Site Scripting Vulnerabilities
BID:31313
Info
xt:Commerce Session Fixation and Cross Site Scripting Vulnerabilities
| Bugtraq ID: | 31313 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-6045 CVE-2008-6044 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 22 2008 12:00AM |
| Updated: | Jul 05 2016 10:01PM |
| Credit: | David Vieira-Kurz from MajorSecurity |
| Vulnerable: |
xt:Commerce xt:Commerce 3.04 |
| Not Vulnerable: | |
Discussion
xt:Commerce Session Fixation and Cross Site Scripting Vulnerabilities
xt:Commerce is prone to multiple vulnerabilities, including a session-fixation vulnerability and a cross-site scripting vulnerability.
An attacker can leverage the session-fixation issue to hijack a session of an unsuspecting user. The attacker can exploit the cross-site scripting issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This can allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
xt:Commerce 3.04 is vulnerable; other versions may also be affected.
xt:Commerce is prone to multiple vulnerabilities, including a session-fixation vulnerability and a cross-site scripting vulnerability.
An attacker can leverage the session-fixation issue to hijack a session of an unsuspecting user. The attacker can exploit the cross-site scripting issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This can allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
xt:Commerce 3.04 is vulnerable; other versions may also be affected.
Exploit / POC
xt:Commerce Session Fixation and Cross Site Scripting Vulnerabilities
To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI.
The following example URIs are available:
To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI.
The following example URIs are available:
Solution / Fix
xt:Commerce Session Fixation and Cross Site Scripting Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
xt:Commerce Session Fixation and Cross Site Scripting Vulnerabilities
References:
References: