XOOPS Local File Include and HTML Injection Vulnerabilities
BID:32685
Info
XOOPS Local File Include and HTML Injection Vulnerabilities
| Bugtraq ID: | 32685 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 08 2008 12:00AM |
| Updated: | Dec 11 2008 04:11AM |
| Credit: | Digital Security Research Group |
| Vulnerable: |
Xoops Xoops 2.3.2 Xoops Xoops 2.3 |
| Not Vulnerable: |
Xoops Xoops 2.3.2 b |
Discussion
XOOPS Local File Include and HTML Injection Vulnerabilities
XOOPS is prone to multiple local file-include vulnerabilities and an HTML-injection vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit the local file-include vulnerabilities using directory-traversal strings to execute local files within the context of the webserver process.
The attacker may leverage the HTML-injection issue to execute arbitrary HTML and script code in the context of the affected browser. This may let the attacker steal cookie-based authentication credentials or control how the site is rendered to the user.
Versions prior to XOOPS 2.3.2b are affected.
XOOPS is prone to multiple local file-include vulnerabilities and an HTML-injection vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit the local file-include vulnerabilities using directory-traversal strings to execute local files within the context of the webserver process.
The attacker may leverage the HTML-injection issue to execute arbitrary HTML and script code in the context of the affected browser. This may let the attacker steal cookie-based authentication credentials or control how the site is rendered to the user.
Versions prior to XOOPS 2.3.2b are affected.
Exploit / POC
XOOPS Local File Include and HTML Injection Vulnerabilities
Attackers can exploit these issues with a browser.
Attackers can exploit these issues with a browser.
Solution / Fix
XOOPS Local File Include and HTML Injection Vulnerabilities
Solution:
Updates are available to address this issue. Please see the references for more information.
Xoops Xoops 2.3
Xoops Xoops 2.3.2
Solution:
Updates are available to address this issue. Please see the references for more information.
Xoops Xoops 2.3
-
Xoops xoops-2.3.2b.tar.gz
http://downloads.sourceforge.net/xoops/xoops-2.3.2b.tar.gz?modtime=122 8601295&big_mirror=0
Xoops Xoops 2.3.2
-
Xoops xoops-2.3.2b.tar.gz
http://downloads.sourceforge.net/xoops/xoops-2.3.2b.tar.gz?modtime=122 8601295&big_mirror=0
References
XOOPS Local File Include and HTML Injection Vulnerabilities
References:
References:
- Security : XOOPS 2.3.2b - Security Release (XOOPS)
- XOOPS Homepage (XOOPS)
- [DSECRG-08-040] Multiple Local File Include Vulnerabilities in Xoops 2.3.x ("Digital Security Research Group \[DSecRG\]"
) - [DSECRG-08-041] Stored XSS Vulnerability in Xoops 2.3.x ("Digital Security Research Group \[DSecRG\]"
)