Achievo Multiple Cross Site Scripting and HTML Injection Vulnerabilities
BID:36661
Info
Achievo Multiple Cross Site Scripting and HTML Injection Vulnerabilities
| Bugtraq ID: | 36661 |
| Class: | Input Validation Error |
| CVE: |
CVE-2009-2733 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 13 2009 12:00AM |
| Updated: | Oct 16 2009 03:58PM |
| Credit: | Ryan Dewhurst from Bonsai Information Security |
| Vulnerable: |
Achievo Achievo 1.3.4 Achievo Achievo 1.3.2 Achievo Achievo 1.2.1 Achievo Achievo 1.1 Achievo Achievo 1.2 |
| Not Vulnerable: |
Achievo Achievo 1.4 |
Discussion
Achievo Multiple Cross Site Scripting and HTML Injection Vulnerabilities
Achievo is prone to multiple cross-site scripting and HTML-injection vulnerabilities because it fails to sufficiently sanitize user-supplied data.
Attacker-supplied HTML or JavaScript code could run in the context of the affected site, potentially allowing the attacker to steal cookie-based authentication credentials and to control how the site is rendered to the user; other attacks are also possible.
Versions prior to Achievo 1.4.0 are affected.
Achievo is prone to multiple cross-site scripting and HTML-injection vulnerabilities because it fails to sufficiently sanitize user-supplied data.
Attacker-supplied HTML or JavaScript code could run in the context of the affected site, potentially allowing the attacker to steal cookie-based authentication credentials and to control how the site is rendered to the user; other attacks are also possible.
Versions prior to Achievo 1.4.0 are affected.
Exploit / POC
Achievo Multiple Cross Site Scripting and HTML Injection Vulnerabilities
Attackers can use a browser to exploit these issues. To exploit a cross-site scripting vulnerability, an attacker must entice an unsuspecting user to follow a malicious URI.
The following example code and URI are available:
Attackers can use a browser to exploit these issues. To exploit a cross-site scripting vulnerability, an attacker must entice an unsuspecting user to follow a malicious URI.
The following example code and URI are available:
Solution / Fix
Achievo Multiple Cross Site Scripting and HTML Injection Vulnerabilities
Solution:
Updates are available. Please see the references for details.
Achievo Achievo 1.2
Achievo Achievo 1.1
Achievo Achievo 1.2.1
Achievo Achievo 1.3.2
Achievo Achievo 1.3.4
Solution:
Updates are available. Please see the references for details.
Achievo Achievo 1.2
-
Achievo achievo-1.4.0.tar.gz
http://www.achievo.org/downloads/achievo/achievo-1.4.0.tar.gz
Achievo Achievo 1.1
-
Achievo achievo-1.4.0.tar.gz
http://www.achievo.org/downloads/achievo/achievo-1.4.0.tar.gz
Achievo Achievo 1.2.1
-
Achievo achievo-1.4.0.tar.gz
http://www.achievo.org/downloads/achievo/achievo-1.4.0.tar.gz
Achievo Achievo 1.3.2
-
Achievo achievo-1.4.0.tar.gz
http://www.achievo.org/downloads/achievo/achievo-1.4.0.tar.gz
Achievo Achievo 1.3.4
-
Achievo achievo-1.4.0.tar.gz
http://www.achievo.org/downloads/achievo/achievo-1.4.0.tar.gz
References
Achievo Multiple Cross Site Scripting and HTML Injection Vulnerabilities
References:
References:
- Achievo 1.4.0 release notes (Achievo)
- Achievo Homepage (Achievo)
- [BONSAI] XSS in Achievo - Customized XSS payload included (Bonsai - Information Security
) - BONSAI-2009-0101 Multiple XSS in Achievo (Bonsai Information Security)