Oracle Weblogic Server 'console-help.portal' Cross Site Scripting Vulnerability
BID:35673
Info
Oracle Weblogic Server 'console-help.portal' Cross Site Scripting Vulnerability
| Bugtraq ID: | 35673 |
| Class: | Input Validation Error |
| CVE: |
CVE-2009-1975 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 14 2009 12:00AM |
| Updated: | Jul 20 2009 04:06PM |
| Credit: | Alexandr Polyakov |
| Vulnerable: |
Oracle Weblogic Server 10.3 |
| Not Vulnerable: | |
Discussion
Oracle Weblogic Server 'console-help.portal' Cross Site Scripting Vulnerability
Oracle WebLogic Server is prone to a cross-site scripting vulnerability. An attacker with 'WLS Console Package' privileges can exploit this issue.
The attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
This vulnerability affects Oracle WebLogic Server 10.3.
Oracle WebLogic Server is prone to a cross-site scripting vulnerability. An attacker with 'WLS Console Package' privileges can exploit this issue.
The attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
This vulnerability affects Oracle WebLogic Server 10.3.
Exploit / POC
Oracle Weblogic Server 'console-help.portal' Cross Site Scripting Vulnerability
An attacker can exploit the issue via a browser.
The following example URI is available:
http://www.example.com:7011/consolehelp/console-help.portal?_nfpb=true&_pageLabel=ConsoleHelpSearchPage&searchQuery="><script>alert('DSECRG')</script>
An attacker can exploit the issue via a browser.
The following example URI is available:
http://www.example.com:7011/consolehelp/console-help.portal?_nfpb=true&_pageLabel=ConsoleHelpSearchPage&searchQuery="><script>alert('DSECRG')</script>
Solution / Fix
Oracle Weblogic Server 'console-help.portal' Cross Site Scripting Vulnerability
Solution:
Vendor updates are available. Please contact the vendor for details.
Solution:
Vendor updates are available. Please contact the vendor for details.
References
Oracle Weblogic Server 'console-help.portal' Cross Site Scripting Vulnerability
References:
References:
- [DSECRG-09-031] Oracle BEA Weblogic - Linked ?SS vulnerability (Digital Security)
- WebLogic Server Product Homepage (Oracle)
- Oracle Critical Patch Update Advisory - July 2009 (Oracle)