Openfire 'server-properties.jsp' HTML Injection Vulnerability
BID:32943
Info
Openfire 'server-properties.jsp' HTML Injection Vulnerability
| Bugtraq ID: | 32943 |
| Class: | Input Validation Error |
| CVE: |
CVE-2009-0496 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 08 2009 12:00AM |
| Updated: | Apr 03 2009 09:46PM |
| Credit: | Federico Muttis of Core Security Technologies |
| Vulnerable: |
Igniterealtime Openfire 3.6.2 Igniterealtime Openfire 3.5.2 Igniterealtime Openfire 3.5.1 Igniterealtime Openfire 3.5 Igniterealtime Openfire 3.4.5 Igniterealtime Openfire 3.4.4 Igniterealtime Openfire 3.4.3 Igniterealtime Openfire 3.4.2 Igniterealtime Openfire 3.4.1 Igniterealtime Openfire 3.4 Igniterealtime Openfire 3.3.1 Igniterealtime Openfire 3.3 Igniterealtime Openfire 3.6.0a Gentoo Linux |
| Not Vulnerable: |
Igniterealtime Openfire 3.6.3 |
Discussion
Openfire 'server-properties.jsp' HTML Injection Vulnerability
Openfire is prone to a HTML-injection vulnerability because it fails to sufficiently sanitize user-supplied data.
Attacker-supplied HTML or JavaScript code could run in the context of the affected site, potentially allowing the attacker to steal cookie-based authentication credentials and to control how the site is rendered to the user; other attacks are also possible.
Openfire 3.6.2 is vulnerable; prior versions may also be affected.
Openfire is prone to a HTML-injection vulnerability because it fails to sufficiently sanitize user-supplied data.
Attacker-supplied HTML or JavaScript code could run in the context of the affected site, potentially allowing the attacker to steal cookie-based authentication credentials and to control how the site is rendered to the user; other attacks are also possible.
Openfire 3.6.2 is vulnerable; prior versions may also be affected.
Exploit / POC
Openfire 'server-properties.jsp' HTML Injection Vulnerability
Attackers can use a browser to exploit these issues.
Attackers can use a browser to exploit these issues.
Solution / Fix
Openfire 'server-properties.jsp' HTML Injection Vulnerability
Solution:
Vendor updates are available. Contact the vendor for details.
Solution:
Vendor updates are available. Contact the vendor for details.
References
Openfire 'server-properties.jsp' HTML Injection Vulnerability
References:
References:
- Openfire Homepage (Ignite Realtime)
- CORE-2008-1128: Openfire multiple vulnerabilities (CORE Security Technologies Advisories
) - Openfire multiple vulnerabilities (Core Security Technologies)