Websense Email Security Cross Site Scripting and HTML Injection Vulnerabilities
BID:36741
Info
Websense Email Security Cross Site Scripting and HTML Injection Vulnerabilities
| Bugtraq ID: | 36741 |
| Class: | Input Validation Error |
| CVE: |
CVE-2009-3748 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 20 2009 12:00AM |
| Updated: | Oct 27 2009 07:48PM |
| Credit: | Nikolas Sotiriu |
| Vulnerable: |
Websense Personal Email Manager 7.1 Websense Email Security 7.1 |
| Not Vulnerable: |
Websense Personal Email Manager 7.2 Websense Personal Email Manager 7.1 Hotfix 4 Websense Email Security 7.2 Websense Email Security 7.1 Hotfix 4 |
Discussion
Websense Email Security Cross Site Scripting and HTML Injection Vulnerabilities
Websense Email Security and Personal Email Manager are prone to multiple cross-site scripting issues and an HTML-injection issue because they fail to sufficiently sanitize user-supplied data.
Attacker-supplied HTML or JavaScript code could run in the context of the affected site, potentially allowing the attacker to steal cookie-based authentication credentials and to control how the site is rendered to the user; other attacks are also possible.
Versions *prior to* the following are affected:
Email Security 7.1 Hotfix 4
Personal Email Manager 7.1 Hotfix 4
Websense Email Security and Personal Email Manager are prone to multiple cross-site scripting issues and an HTML-injection issue because they fail to sufficiently sanitize user-supplied data.
Attacker-supplied HTML or JavaScript code could run in the context of the affected site, potentially allowing the attacker to steal cookie-based authentication credentials and to control how the site is rendered to the user; other attacks are also possible.
Versions *prior to* the following are affected:
Email Security 7.1 Hotfix 4
Personal Email Manager 7.1 Hotfix 4
Exploit / POC
Websense Email Security Cross Site Scripting and HTML Injection Vulnerabilities
Attackers can use a browser to exploit these issues. To exploit a cross-site scripting vulnerability, an attacker must entice an unsuspecting user to follow a malicious URI.
The following example URIs and proof of concept are available:
Attackers can use a browser to exploit these issues. To exploit a cross-site scripting vulnerability, an attacker must entice an unsuspecting user to follow a malicious URI.
The following example URIs and proof of concept are available:
Solution / Fix
Websense Email Security Cross Site Scripting and HTML Injection Vulnerabilities
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
Websense Email Security Cross Site Scripting and HTML Injection Vulnerabilities
References:
References:
- About Hotfix 4 for Websense Email Security v7.1 (Websense)
- NSOADV-2009-003 Websense Email Security Cross Site Scripting (Nikolas Sotiriu)
- Websense Homepage (Websense)
- NSOADV-2009-003: Websense Email Security Cross Site Scripting (NSO Research
) - RE: [Full-disclosure] NSOADV-2009-003: Websense Email Security Cross Site Script ("Hubbard, Dan"
)