TYPO3 Yet Another Calendar Extension Cross Site Scripting and SQL Injection Vulnerabilities
BID:42945
Info
TYPO3 Yet Another Calendar Extension Cross Site Scripting and SQL Injection Vulnerabilities
| Bugtraq ID: | 42945 |
| Class: | Input Validation Error |
| CVE: |
CVE-2010-4890 CVE-2010-4891 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 02 2010 12:00AM |
| Updated: | Oct 11 2011 08:50PM |
| Credit: | Alexander Kellner |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
TYPO3 Yet Another Calendar Extension Cross Site Scripting and SQL Injection Vulnerabilities
The Yet Another Calendar 'ke_yac' extension for TYPO3 is prone to unspecified SQL-injection and cross-site scripting vulnerabilities because it fails to sufficiently sanitize user-supplied data.
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
Yet Another Calendar 1.1.1 and prior are vulnerable.
The Yet Another Calendar 'ke_yac' extension for TYPO3 is prone to unspecified SQL-injection and cross-site scripting vulnerabilities because it fails to sufficiently sanitize user-supplied data.
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
Yet Another Calendar 1.1.1 and prior are vulnerable.
Exploit / POC
TYPO3 Yet Another Calendar Extension Cross Site Scripting and SQL Injection Vulnerabilities
An attacker can exploit these issues via a browser. To exploit a cross-site scripting issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
An attacker can exploit these issues via a browser. To exploit a cross-site scripting issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
Solution / Fix
TYPO3 Yet Another Calendar Extension Cross Site Scripting and SQL Injection Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
TYPO3 Yet Another Calendar Extension Cross Site Scripting and SQL Injection Vulnerabilities
References:
References: