Bharat Mediratta Gallery Cross-Site Scripting Vulnerability
BID:3675
Info
Bharat Mediratta Gallery Cross-Site Scripting Vulnerability
| Bugtraq ID: | 3675 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 27 2001 12:00AM |
| Updated: | Nov 27 2001 12:00AM |
| Credit: | The vendor has credited Cabezon Aurelien with discovering this vulnerability. |
| Vulnerable: |
Bharat Mediratta Gallery 1.2.3 Bharat Mediratta Gallery 1.2.2 Bharat Mediratta Gallery 1.2.1 p1 Bharat Mediratta Gallery 1.2.1 Bharat Mediratta Gallery 1.2 Bharat Mediratta Gallery 1.1 |
| Not Vulnerable: |
Bharat Mediratta Gallery 1.2.5 Bharat Mediratta Gallery 1.2.4 |
Discussion
Bharat Mediratta Gallery Cross-Site Scripting Vulnerability
Bharat Mediratta Gallery is a freely available, open-source web based gallery software. It allows users to create their own web galleries based on a template.
Gallery is prone to cross-site scripting attacks. HTML tags are not properly escaped from search queries or comment values. This may allow an attacker to submit malicious script code which may be executed on a web user, in the context of the site running Gallery.
This issue can be exploited by an attacker to steal a legitimate user's cookie-based authentication credentials.
Bharat Mediratta Gallery is a freely available, open-source web based gallery software. It allows users to create their own web galleries based on a template.
Gallery is prone to cross-site scripting attacks. HTML tags are not properly escaped from search queries or comment values. This may allow an attacker to submit malicious script code which may be executed on a web user, in the context of the site running Gallery.
This issue can be exploited by an attacker to steal a legitimate user's cookie-based authentication credentials.
Exploit / POC
Bharat Mediratta Gallery Cross-Site Scripting Vulnerability
There is no exploit code required.
There is no exploit code required.
Solution / Fix
Bharat Mediratta Gallery Cross-Site Scripting Vulnerability
Solution:
Web users can protect themselves by using the security features of their browser to disable the execution of JavaScript.
The vendor has released an upgrade which addresses this issue.
Bharat Mediratta Gallery 1.1
Bharat Mediratta Gallery 1.2
Bharat Mediratta Gallery 1.2.1
Bharat Mediratta Gallery 1.2.1 p1
Bharat Mediratta Gallery 1.2.2
Bharat Mediratta Gallery 1.2.3
Solution:
Web users can protect themselves by using the security features of their browser to disable the execution of JavaScript.
The vendor has released an upgrade which addresses this issue.
Bharat Mediratta Gallery 1.1
-
Bharat Mediratta Gallery v1.2.4
http://prdownloads.sourceforge.net/gallery/gallery-1.2.4.tar.gz
Bharat Mediratta Gallery 1.2
-
Bharat Mediratta Gallery v1.2.4
http://prdownloads.sourceforge.net/gallery/gallery-1.2.4.tar.gz
Bharat Mediratta Gallery 1.2.1
-
Bharat Mediratta Gallery v1.2.4
http://prdownloads.sourceforge.net/gallery/gallery-1.2.4.tar.gz
Bharat Mediratta Gallery 1.2.1 p1
-
Bharat Mediratta Gallery v1.2.4
http://prdownloads.sourceforge.net/gallery/gallery-1.2.4.tar.gz
Bharat Mediratta Gallery 1.2.2
-
Bharat Mediratta Gallery v1.2.4
http://prdownloads.sourceforge.net/gallery/gallery-1.2.4.tar.gz
Bharat Mediratta Gallery 1.2.3
-
Bharat Mediratta Gallery v1.2.4
http://prdownloads.sourceforge.net/gallery/gallery-1.2.4.tar.gz