Roundcube Webmail Background Attributes Email Message HTML Injection Vulnerability
BID:33372
Info
Roundcube Webmail Background Attributes Email Message HTML Injection Vulnerability
| Bugtraq ID: | 33372 |
| Class: | Input Validation Error |
| CVE: |
CVE-2009-0413 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 20 2009 12:00AM |
| Updated: | Apr 13 2015 10:06PM |
| Credit: | Julien Cayssol |
| Vulnerable: |
Roundcube Round Cube Webmail 0.2-Stable |
| Not Vulnerable: | |
Discussion
Roundcube Webmail Background Attributes Email Message HTML Injection Vulnerability
Roundcube Webmail is prone to an HTML-injection vulnerability because the application fails to sufficiently sanitize user-supplied input before using it in dynamically generated content.
Exploiting this issue may allow an attacker to execute HTML and script code in the context of the affected site, to steal cookie-based authentication credentials, or to control how the site is rendered to the user; other attacks are also possible.
Roundcube Webmail 0.2-stable is vulnerable; other versions may also be affected.
Roundcube Webmail is prone to an HTML-injection vulnerability because the application fails to sufficiently sanitize user-supplied input before using it in dynamically generated content.
Exploiting this issue may allow an attacker to execute HTML and script code in the context of the affected site, to steal cookie-based authentication credentials, or to control how the site is rendered to the user; other attacks are also possible.
Roundcube Webmail 0.2-stable is vulnerable; other versions may also be affected.
Exploit / POC
Roundcube Webmail Background Attributes Email Message HTML Injection Vulnerability
Attackers can exploit this issue by sending malicious emails to unsuspecting victims and enticing them to open the mail.
Attackers can exploit this issue by sending malicious emails to unsuspecting victims and enticing them to open the mail.
Solution / Fix
Roundcube Webmail Background Attributes Email Message HTML Injection Vulnerability
Solution:
A vendor fix is available in the CVS repository. Please see the references for more information.
Solution:
A vendor fix is available in the CVS repository. Please see the references for more information.
References
Roundcube Webmail Background Attributes Email Message HTML Injection Vulnerability
References:
References:
- Changeset 2245 (RoundCube)
- RoundCube Webmail Homepage (RoundCube)