SAP Netweaver Multiple Cross Site Scripting and HTML Injection Vulnerabilities
BID:46853
Info
SAP Netweaver Multiple Cross Site Scripting and HTML Injection Vulnerabilities
| Bugtraq ID: | 46853 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 14 2011 12:00AM |
| Updated: | Mar 14 2011 06:07PM |
| Credit: | Alexandr Polyakov and Dmitriy Evdokimo |
| Vulnerable: |
SAP NetWeaver 7.0 SAP NetWeaver 6.4 |
| Not Vulnerable: | |
Discussion
SAP Netweaver Multiple Cross Site Scripting and HTML Injection Vulnerabilities
SAP Netweaver is prone to multiple cross-site scripting vulnerabilities and an HTML-injection vulnerability because it fails to properly sanitize user-supplied input.
An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.
SAP Netweaver is prone to multiple cross-site scripting vulnerabilities and an HTML-injection vulnerability because it fails to properly sanitize user-supplied input.
An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.
Exploit / POC
SAP Netweaver Multiple Cross Site Scripting and HTML Injection Vulnerabilities
An attacker can exploit the HTML-injection issues through a browser. To exploit a cross-site scripting vulnerability an attacker must entice an unsuspecting victim to follow a malicious URI.
An attacker can exploit the HTML-injection issues through a browser. To exploit a cross-site scripting vulnerability an attacker must entice an unsuspecting victim to follow a malicious URI.
Solution / Fix
SAP Netweaver Multiple Cross Site Scripting and HTML Injection Vulnerabilities
Solution:
The vendor released an update. Please see the references for details.
Solution:
The vendor released an update. Please see the references for details.
References
SAP Netweaver Multiple Cross Site Scripting and HTML Injection Vulnerabilities
References:
References:
- [DSECRG-11-012] SAP NetWaver Integration Directory - multiple XSS (Alexandr Polyakov)
- [DSECRG-11-010] SAP NetWeaver logon.html - XSS (Alexandr Polyakov)
- [DSECRG-11-013] SAP NetWaver Runtime - multiple XSS (Alexander Polyakov)
- SAP NetWeaver Homepage (SAP)
- [DSECRG-11-009] SAP NetWaver XI SOAP Adapter - XSS (Alexandr Polyakov
)