jCart Multiple Security Vulnerabilities
BID:43639
Info
jCart Multiple Security Vulnerabilities
| Bugtraq ID: | 43639 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 01 2010 12:00AM |
| Updated: | Oct 01 2010 12:00AM |
| Credit: | p0deje |
| Vulnerable: |
Doug Whitney jCart 1.1 |
| Not Vulnerable: | |
Discussion
jCart Multiple Security Vulnerabilities
jCart is prone to multiple vulnerabilities. These vulnerabilities include an open-redirection vulnerability, a cross-site scripting vulnerability, and multiple cross-site request-forgery vulnerabilities.
An attacker may leverage these issues to perform spoofing and phishing attacks, execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, or to obtain unauthorized access and perform unauthorized actions. Other attacks may also be possible.
jCart 1.1 is vulnerable; other versions may also be affected.
jCart is prone to multiple vulnerabilities. These vulnerabilities include an open-redirection vulnerability, a cross-site scripting vulnerability, and multiple cross-site request-forgery vulnerabilities.
An attacker may leverage these issues to perform spoofing and phishing attacks, execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, or to obtain unauthorized access and perform unauthorized actions. Other attacks may also be possible.
jCart 1.1 is vulnerable; other versions may also be affected.
Exploit / POC
jCart Multiple Security Vulnerabilities
Attackers can exploit these issues by enticing an unsuspecting user to follow a specially crafted URI.
The following example requests are available:
Attackers can exploit these issues by enticing an unsuspecting user to follow a specially crafted URI.
The following example requests are available:
Solution / Fix
jCart Multiple Security Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].