PacketVideo Twonky Server Cross Site Scripting and HTML Injection Vulnerabilities
BID:41929
Info
PacketVideo Twonky Server Cross Site Scripting and HTML Injection Vulnerabilities
| Bugtraq ID: | 41929 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 01 2009 12:00AM |
| Updated: | Nov 01 2009 12:00AM |
| Credit: | Davide Canali |
| Vulnerable: |
Packetvideo Twonkymedia 5.0.65 Packetvideo Twonkymedia 4.4.17 |
| Not Vulnerable: |
Packetvideo Twonkymedia 5.0.66 Packetvideo Twonkymedia 4.4.18 Packetvideo Twonkymedia 5.1 |
Discussion
PacketVideo Twonky Server Cross Site Scripting and HTML Injection Vulnerabilities
Twonky Server is prone to a cross-site scripting vulnerability and multiple HTML-injection vulnerabilities because it fails to properly sanitize user-supplied input before using it in dynamically generated content.
Attacker-supplied HTML and script code could run in the context of the affected browser, potentially allowing the attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user. Other attacks are also possible.
Versions prior to Twonky Server 4.4.18, 5.0.66, and 5.1 are vulnerable.
Twonky Server is prone to a cross-site scripting vulnerability and multiple HTML-injection vulnerabilities because it fails to properly sanitize user-supplied input before using it in dynamically generated content.
Attacker-supplied HTML and script code could run in the context of the affected browser, potentially allowing the attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user. Other attacks are also possible.
Versions prior to Twonky Server 4.4.18, 5.0.66, and 5.1 are vulnerable.
Exploit / POC
PacketVideo Twonky Server Cross Site Scripting and HTML Injection Vulnerabilities
Attackers can use a browser to exploit these issues. To exploit a cross-site scripting vulnerability, an attacker must entice an unsuspecting user to follow a malicious URI.
The following example URI is available:
Attackers can use a browser to exploit these issues. To exploit a cross-site scripting vulnerability, an attacker must entice an unsuspecting user to follow a malicious URI.
The following example URI is available:
Solution / Fix
PacketVideo Twonky Server Cross Site Scripting and HTML Injection Vulnerabilities
Solution:
Reports indicate vendor updates are available; this has not been confirmed. Contact the vendor for more information.
Solution:
Reports indicate vendor updates are available; this has not been confirmed. Contact the vendor for more information.
References
PacketVideo Twonky Server Cross Site Scripting and HTML Injection Vulnerabilities
References:
References: