W3Perl Web Statistics Header Manipulation Vulnerability
BID:3939
Info
W3Perl Web Statistics Header Manipulation Vulnerability
| Bugtraq ID: | 3939 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 23 2002 12:00AM |
| Updated: | Jan 23 2002 12:00AM |
| Credit: | This vulnerability was submitted to BugTraq on January 23rd, 2002 by zeno <[email protected]>. |
| Vulnerable: |
W3Perl W3Perl 2.85 W3Perl W3Perl 2.84 W3Perl W3Perl 2.83 W3Perl W3Perl 2.82 W3Perl W3Perl 2.81 |
| Not Vulnerable: |
W3Perl W3Perl 2.86 |
Discussion
W3Perl Web Statistics Header Manipulation Vulnerability
W3Perl is freely available, open-source web statistics software. W3Perl generates statistics for website usage based on log files and outputs them to HTML. Users can select various levels of detail. W3Perl will run on most Linux and Unix variants as well as Microsoft Windows NT/2000 operating systems.
W3Perl does not sufficiently sanitize the data it processes from log files. As a result, it may be possible for an attacker to inject maliciously constructed data which will end up being displayed on the website running W3Perl.
Attackers can exploit this situation by crafting a HTTP header which contains malicious script code, resulting in a cross-site scripting attack. This issue may also be exploited to falsify log entries.
HTTP header manipulation attacks against the web statistics software may allow the attacker to hijack sessions by stealing cookie-based authentication credentials from users.
W3Perl is freely available, open-source web statistics software. W3Perl generates statistics for website usage based on log files and outputs them to HTML. Users can select various levels of detail. W3Perl will run on most Linux and Unix variants as well as Microsoft Windows NT/2000 operating systems.
W3Perl does not sufficiently sanitize the data it processes from log files. As a result, it may be possible for an attacker to inject maliciously constructed data which will end up being displayed on the website running W3Perl.
Attackers can exploit this situation by crafting a HTTP header which contains malicious script code, resulting in a cross-site scripting attack. This issue may also be exploited to falsify log entries.
HTTP header manipulation attacks against the web statistics software may allow the attacker to hijack sessions by stealing cookie-based authentication credentials from users.
Exploit / POC
W3Perl Web Statistics Header Manipulation Vulnerability
This issue may be exploited using a utility such as telnet to craft a raw HTTP header.
This issue may be exploited using a utility such as telnet to craft a raw HTTP header.