cpCommerce Multiple Cross Site Scripting Vulnerabilities
BID:31825
Info
cpCommerce Multiple Cross Site Scripting Vulnerabilities
| Bugtraq ID: | 31825 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-4121 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 20 2008 12:00AM |
| Updated: | Oct 21 2008 09:07PM |
| Credit: | Fabian Fingerle |
| Vulnerable: |
cpCommerce cpCommerce 1.2.3 cpCommerce cpCommerce 1.1 cpCommerce cpCommerce 0.5 f |
| Not Vulnerable: |
cpCommerce cpCommerce 1.2.4 |
Discussion
cpCommerce Multiple Cross Site Scripting Vulnerabilities
cpCommerce is prone to multiple cross-site scripting vulnerabilities because it fails to sufficiently sanitize user-supplied input.
Attacker-supplied HTML and script code would execute in the context of the affected site, potentially allowing the attacker to steal cookie-based authentication credentials.
Versions prior to cpCommerce 1.2.4 are vulnerable.
cpCommerce is prone to multiple cross-site scripting vulnerabilities because it fails to sufficiently sanitize user-supplied input.
Attacker-supplied HTML and script code would execute in the context of the affected site, potentially allowing the attacker to steal cookie-based authentication credentials.
Versions prior to cpCommerce 1.2.4 are vulnerable.
Exploit / POC
cpCommerce Multiple Cross Site Scripting Vulnerabilities
An attacker can exploit these issues by enticing an unsuspecting victim to follow a malicious URI.
The following proof of concept is available:
An attacker can exploit these issues by enticing an unsuspecting victim to follow a malicious URI.
The following proof of concept is available:
Solution / Fix
cpCommerce Multiple Cross Site Scripting Vulnerabilities
Solution:
The vendor released an update to address these issues. Please see the references for more information.
cpCommerce cpCommerce 0.5 f
cpCommerce cpCommerce 1.1
cpCommerce cpCommerce 1.2.3
Solution:
The vendor released an update to address these issues. Please see the references for more information.
cpCommerce cpCommerce 0.5 f
-
cpCommerce v1.2.4.patch
http://cpcommerce.cpradio.org/downloads.php?action=download.patch&v=v1 .2.4
cpCommerce cpCommerce 1.1
-
cpCommerce v1.2.4.patch
http://cpcommerce.cpradio.org/downloads.php?action=download.patch&v=v1 .2.4
cpCommerce cpCommerce 1.2.3
-
cpCommerce v1.2.4.patch
http://cpcommerce.cpradio.org/downloads.php?action=download.patch&v=v1 .2.4
References
cpCommerce Multiple Cross Site Scripting Vulnerabilities
References:
References:
- cpCommerce Homepage (cpCommerce)
- Cross Site Scripting (XSS) Vulnerabilitiy in cpcommerce, CVE-2008-4121 (Fabian Fingerle
)