pfSense DHCPREQUEST Hostname HTML Injection Vulnerability
BID:31334
Info
pfSense DHCPREQUEST Hostname HTML Injection Vulnerability
| Bugtraq ID: | 31334 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 22 2008 12:00AM |
| Updated: | Sep 29 2008 11:08PM |
| Credit: | Rafael Dominguez Vega |
| Vulnerable: |
Bsdperimeter pfSense 1.0.1 |
| Not Vulnerable: |
Bsdperimeter pfSense 1.2 |
Discussion
pfSense DHCPREQUEST Hostname HTML Injection Vulnerability
pfSense is prone to an HTML-injection vulnerability because its administrative web interface fails to sufficiently sanitize user-supplied input data.
Attacker-supplied HTML and script code would run in the context of the affected application, potentially allowing the attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user; other attacks are also possible.
The issue affects pfSense 1.0.1.
pfSense is prone to an HTML-injection vulnerability because its administrative web interface fails to sufficiently sanitize user-supplied input data.
Attacker-supplied HTML and script code would run in the context of the affected application, potentially allowing the attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user; other attacks are also possible.
The issue affects pfSense 1.0.1.
Exploit / POC
pfSense DHCPREQUEST Hostname HTML Injection Vulnerability
Attacker can exploit this issue using standard, readily available tools.
Attacker can exploit this issue using standard, readily available tools.
Solution / Fix
pfSense DHCPREQUEST Hostname HTML Injection Vulnerability
Solution:
The vendor released an update to address this issue. Please see the references for more information.
Solution:
The vendor released an update to address this issue. Please see the references for more information.
References
pfSense DHCPREQUEST Hostname HTML Injection Vulnerability
References:
References:
- pfSense Home Page (BSD Perimeter)