CMS Made Simple Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
BID:40483
Info
CMS Made Simple Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
| Bugtraq ID: | 40483 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 01 2010 12:00AM |
| Updated: | Jun 01 2010 12:00AM |
| Credit: | Truong Thao Nguyen, Do Hoang Bach, Cao Xuan Sang |
| Vulnerable: |
CMS Made Simple CMS Made Simple 1.7.1 CMS Made Simple CMS Made Simple 1.7 CMS Made Simple CMS Made Simple 1.6.6 CMS Made Simple CMS Made Simple 1.6.2 CMS Made Simple CMS Made Simple 1.5.1 CMS Made Simple CMS Made Simple 1.4.1 CMS Made Simple CMS Made Simple 1.2.5 CMS Made Simple CMS Made Simple 1.2.4 CMS Made Simple CMS Made Simple 1.2.2 CMS Made Simple CMS Made Simple 1.1.2 CMS Made Simple CMS Made Simple 1.0.3 CMS Made Simple CMS Made Simple 1.0.2 CMS Made Simple CMS Made Simple 1.5 CMS Made Simple CMS Made Simple 1.1.4.1 CMS Made Simple CMS Made Simple 1.1.3.1 CMS Made Simple CMS Made Simple 1.06 CMS Made Simple CMS Made Simple 1.05 |
| Not Vulnerable: | |
Discussion
CMS Made Simple Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
CMS Made Simple is prone to multiple cross-site scripting vulnerabilities because the software fails to sufficiently sanitize user-supplied inputs. The application is also prone to a cross-site request-forgery vulnerability.
An attacker may leverage the cross-site scripting issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
The attacker can exploit the cross-site request-forgery issue by tricking a victim into following a specially crafted HTTP request designed to perform some action on the attacker's behalf using a victim's currently active session.
CMS Made Simple 1.7.1 and prior are vulnerable.
CMS Made Simple is prone to multiple cross-site scripting vulnerabilities because the software fails to sufficiently sanitize user-supplied inputs. The application is also prone to a cross-site request-forgery vulnerability.
An attacker may leverage the cross-site scripting issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
The attacker can exploit the cross-site request-forgery issue by tricking a victim into following a specially crafted HTTP request designed to perform some action on the attacker's behalf using a victim's currently active session.
CMS Made Simple 1.7.1 and prior are vulnerable.
Exploit / POC
CMS Made Simple Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI or visiting a malicious website.
To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI or visiting a malicious website.
Solution / Fix
CMS Made Simple Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
CMS Made Simple Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
References:
References:
- CMS Made Simple Homepage (CMS Made Simple)