Horde IMP Status.PHP3 Cross-Site Scripting Vulnerability
BID:4444
Info
Horde IMP Status.PHP3 Cross-Site Scripting Vulnerability
| Bugtraq ID: | 4444 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 06 2002 12:00AM |
| Updated: | Apr 06 2002 12:00AM |
| Credit: | The Horde Project credits Nuno Loureiro <[email protected]> with discovery. |
| Vulnerable: |
Horde Project IMP 3.0 Horde Project IMP 2.2.7 Horde Project IMP 2.2.6 |
| Not Vulnerable: |
Horde Project IMP 3.1 Horde Project IMP 2.3 Horde Project IMP 2.2.8 |
Discussion
Horde IMP Status.PHP3 Cross-Site Scripting Vulnerability
Horde IMP is vulnerable to a cross-site scripting problem.
Script code is not filtered from the URL parameters of the status.php3 script. As a result, it is possible for an attacker to create a malicious link to this script which contains arbitrary attacker-supplied script code.
This may enable attackers to steal cookie-based authentication credentials from legitimate users of a site running the software.
It may also be possible that script injected in this way may be viewed by other users.
Horde IMP is vulnerable to a cross-site scripting problem.
Script code is not filtered from the URL parameters of the status.php3 script. As a result, it is possible for an attacker to create a malicious link to this script which contains arbitrary attacker-supplied script code.
This may enable attackers to steal cookie-based authentication credentials from legitimate users of a site running the software.
It may also be possible that script injected in this way may be viewed by other users.
Exploit / POC
Horde IMP Status.PHP3 Cross-Site Scripting Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.