Waverider Systems Perlshop Multiple Input Validation Vulnerabilities
BID:43158
Info
Waverider Systems Perlshop Multiple Input Validation Vulnerabilities
| Bugtraq ID: | 43158 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 06 2009 12:00AM |
| Updated: | Aug 06 2009 12:00AM |
| Credit: | shadow |
| Vulnerable: |
Waverider Systems Perlshop 0 |
| Not Vulnerable: | |
Discussion
Waverider Systems Perlshop Multiple Input Validation Vulnerabilities
Perlshop is prone to multiple input-validation vulnerabilities including a nondescript input-validation vulnerability, multiple cross-site scripting vulnerabilities, and a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input.
Exploiting these issues will allow an attacker to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, input arbitrary data to restricted parameters, and view arbitrary local files and directories within the context of the webserver. This may let the attacker steal cookie-based authentication credentials and other harvested information, which may aid in launching further attacks.
Perlshop is prone to multiple input-validation vulnerabilities including a nondescript input-validation vulnerability, multiple cross-site scripting vulnerabilities, and a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input.
Exploiting these issues will allow an attacker to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, input arbitrary data to restricted parameters, and view arbitrary local files and directories within the context of the webserver. This may let the attacker steal cookie-based authentication credentials and other harvested information, which may aid in launching further attacks.
Exploit / POC
Waverider Systems Perlshop Multiple Input Validation Vulnerabilities
Attackers can exploit the cross-site scripting issue by enticing an unsuspecting victim to follow a malicious URI.
The following example URI is available:
http://www.example.cgi/cgi-bin/perlshop.cgi?ACTION=ENTER%20SHOP&thispage=../../../../../../../../etc/passwd&ORDER_ID=%21ORDERID%21&LANG=english&CUR=dollar
Attackers can exploit the cross-site scripting issue by enticing an unsuspecting victim to follow a malicious URI.
The following example URI is available:
http://www.example.cgi/cgi-bin/perlshop.cgi?ACTION=ENTER%20SHOP&thispage=../../../../../../../../etc/passwd&ORDER_ID=%21ORDERID%21&LANG=english&CUR=dollar
Solution / Fix
Waverider Systems Perlshop Multiple Input Validation Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Waverider Systems Perlshop Multiple Input Validation Vulnerabilities
References:
References:
- Perlshop - Homepage (Waverider Systems)