SilverStripe Multiple Remote Vulnerabilities
BID:38394
Info
SilverStripe Multiple Remote Vulnerabilities
| Bugtraq ID: | 38394 |
| Class: | Input Validation Error |
| CVE: |
CVE-2010-5095 CVE-2010-5188 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 24 2010 12:00AM |
| Updated: | Apr 13 2015 09:02PM |
| Credit: | SilverStripe |
| Vulnerable: |
SilverStripe SilverStripe CMS 2.0.1 SilverStripe SilverStripe CMS 2.0 SilverStripe SilverStripe 2.3.5 SilverStripe SilverStripe 2.3.4 SilverStripe SilverStripe 2.3.1 SilverStripe SilverStripe 2.3 SilverStripe SilverStripe 2.0 SilverStripe SilverStripe 2.2.2-rc2 SilverStripe SilverStripe 2.2.2-rc1 |
| Not Vulnerable: |
SilverStripe SilverStripe 2.3.6 |
Discussion
SilverStripe Multiple Remote Vulnerabilities
SilverStripe is prone to multiple remote issues, including a cross-site scripting vulnerability and multiple information-disclosure vulnerabilities.
An attacker can leverage the cross-site scripting issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
The attacker may exploit the information-disclosure vulnerabilities to view the debug log or to view the memory usage of the PHP script, which may aid in further attacks.
These issues affect versions prior to SilverStripe 2.3.6; other versions may also be affected.
SilverStripe is prone to multiple remote issues, including a cross-site scripting vulnerability and multiple information-disclosure vulnerabilities.
An attacker can leverage the cross-site scripting issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
The attacker may exploit the information-disclosure vulnerabilities to view the debug log or to view the memory usage of the PHP script, which may aid in further attacks.
These issues affect versions prior to SilverStripe 2.3.6; other versions may also be affected.
Exploit / POC
SilverStripe Multiple Remote Vulnerabilities
Attackers can use a browser to exploit these issues. To exploit a cross-site scripting issue, an attacker must entice an unsuspecting user to follow a malicious URI.
Attackers can use a browser to exploit these issues. To exploit a cross-site scripting issue, an attacker must entice an unsuspecting user to follow a malicious URI.
Solution / Fix
SilverStripe Multiple Remote Vulnerabilities
Solution:
The vendor has released an update. Please see the references for details.
SilverStripe SilverStripe 2.2.2-rc1
SilverStripe SilverStripe 2.2.2-rc2
SilverStripe SilverStripe 2.0
SilverStripe SilverStripe 2.3
SilverStripe SilverStripe 2.3.1
SilverStripe SilverStripe 2.3.4
SilverStripe SilverStripe 2.3.5
Solution:
The vendor has released an update. Please see the references for details.
SilverStripe SilverStripe 2.2.2-rc1
-
SilverStripe SilverStripe-v2.3.6.tar.gz
http://www.silverstripe.org/assets/downloads/SilverStripe-v2.3.6.tar.g z
SilverStripe SilverStripe 2.2.2-rc2
-
SilverStripe SilverStripe-v2.3.6.tar.gz
http://www.silverstripe.org/assets/downloads/SilverStripe-v2.3.6.tar.g z
SilverStripe SilverStripe 2.0
-
SilverStripe SilverStripe-v2.3.6.tar.gz
http://www.silverstripe.org/assets/downloads/SilverStripe-v2.3.6.tar.g z
SilverStripe SilverStripe 2.3
-
SilverStripe SilverStripe-v2.3.6.tar.gz
http://www.silverstripe.org/assets/downloads/SilverStripe-v2.3.6.tar.g z
SilverStripe SilverStripe 2.3.1
-
SilverStripe SilverStripe-v2.3.6.tar.gz
http://www.silverstripe.org/assets/downloads/SilverStripe-v2.3.6.tar.g z
SilverStripe SilverStripe 2.3.4
-
SilverStripe SilverStripe-v2.3.6.tar.gz
http://www.silverstripe.org/assets/downloads/SilverStripe-v2.3.6.tar.g z
SilverStripe SilverStripe 2.3.5
-
SilverStripe SilverStripe-v2.3.6.tar.gz
http://www.silverstripe.org/assets/downloads/SilverStripe-v2.3.6.tar.g z
References
SilverStripe Multiple Remote Vulnerabilities
References:
References:
- SilverStripe 2.3.6 - Security Release (SilverStripe)
- SilverStripe Homepage (SilverStripe)