DeleGate Cross-Site Scripting Vulnerability
BID:3749
Info
DeleGate Cross-Site Scripting Vulnerability
| Bugtraq ID: | 3749 |
| Class: | Input Validation Error |
| CVE: |
CVE-2001-1202 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 28 2001 12:00AM |
| Updated: | Jul 11 2009 09:06AM |
| Credit: | This vulnerability was publicized in a SNS Advisory on December 28th, 2001. |
| Vulnerable: |
DeleGate DeleGate 7.7.1 DeleGate DeleGate 7.7 .0 |
| Not Vulnerable: |
DeleGate DeleGate 7.8 .0 |
Discussion
DeleGate Cross-Site Scripting Vulnerability
DeleGate is a proxy server which runs on Linux , Unix, Microsoft Windows and OS/2 platforms. It is capable of translating a number of protocols(HTTP, FTP, NNTP, POP, Telnet, etc.) between client and server.
DeleGate is prone to cross-site scripting attacks. HTML tags are not filtered from links to error pages. As a result, it is possible for an attacker to insert malicious script code into a link to a site running DeleGate. When a web user clicks the link an error page will be displayed and the script code will be executed on the web user in the context of the site running DeleGate.
Such an attack may be used to steal a legitimate user's cookie-based authentication credentials.
DeleGate is a proxy server which runs on Linux , Unix, Microsoft Windows and OS/2 platforms. It is capable of translating a number of protocols(HTTP, FTP, NNTP, POP, Telnet, etc.) between client and server.
DeleGate is prone to cross-site scripting attacks. HTML tags are not filtered from links to error pages. As a result, it is possible for an attacker to insert malicious script code into a link to a site running DeleGate. When a web user clicks the link an error page will be displayed and the script code will be executed on the web user in the context of the site running DeleGate.
Such an attack may be used to steal a legitimate user's cookie-based authentication credentials.
Exploit / POC
DeleGate Cross-Site Scripting Vulnerability
The following example was submitted in the SNS Advisory:
http://IP_Address_of_DeleGate/<script>alert("aaa");</script>
The following example was submitted in the SNS Advisory:
http://IP_Address_of_DeleGate/<script>alert("aaa");</script>
Solution / Fix
DeleGate Cross-Site Scripting Vulnerability
Solution:
The vendor has released an upgrade which addresses this issue.
DeleGate DeleGate 7.7 .0
DeleGate DeleGate 7.7.1
Solution:
The vendor has released an upgrade which addresses this issue.
DeleGate DeleGate 7.7 .0
-
DeleGate DeleGate/7.8.0 (ALPHA)
ftp://ftp.delegate.org/pub/DeleGate/alpha/
DeleGate DeleGate 7.7.1
-
DeleGate DeleGate/7.8.0 (ALPHA)
ftp://ftp.delegate.org/pub/DeleGate/alpha/