LotusCMS Multiple Cross Site Scripting and Local File Include Vulnerabilities
BID:46873
Info
LotusCMS Multiple Cross Site Scripting and Local File Include Vulnerabilities
| Bugtraq ID: | 46873 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 15 2011 12:00AM |
| Updated: | Mar 21 2011 08:07PM |
| Credit: | High-Tech Bridge SA |
| Vulnerable: |
Arboroia Network LotusCMS 3.0.3 |
| Not Vulnerable: |
Arboroia Network LotusCMS 3.0.5 |
Discussion
LotusCMS Multiple Cross Site Scripting and Local File Include Vulnerabilities
LotusCMS is prone to multiple cross-site scripting vulnerabilities and a local file-include vulnerability because the application fails to sufficiently sanitize user-supplied data.
An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, and open or run arbitrary files in the context of the webserver process.
LotusCMS 3.0.3 is vulnerable; other versions may also be affected.
LotusCMS is prone to multiple cross-site scripting vulnerabilities and a local file-include vulnerability because the application fails to sufficiently sanitize user-supplied data.
An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, and open or run arbitrary files in the context of the webserver process.
LotusCMS 3.0.3 is vulnerable; other versions may also be affected.
Exploit / POC
LotusCMS Multiple Cross Site Scripting and Local File Include Vulnerabilities
An attacker can exploit these issues through a browser. To exploit a cross-site scripting issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
The following example URIs are available:
An attacker can exploit these issues through a browser. To exploit a cross-site scripting issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
The following example URIs are available:
Solution / Fix
LotusCMS Multiple Cross Site Scripting and Local File Include Vulnerabilities
Solution:
Updates are available; please see the references for more information.
Solution:
Updates are available; please see the references for more information.
References
LotusCMS Multiple Cross Site Scripting and Local File Include Vulnerabilities
References:
References:
- LotusCMS Homepage (Arboroia Network)
- HTB22883: XSS vulnerability in LotusCMS (advisory)
- HTB22883: XSS vulnerability in LotusCMS (advisory)
- HTB22883: XSS vulnerability in LotusCMS (advisory)
- HTB22883: XSS vulnerability in LotusCMS (advisory)
- HTB22888: File Content Disclosure in LotusCMS (advisory)
- Re: HTB22884: XSS vulnerability in LotusCMS ([email protected])
- HTB22883: XSS vulnerability in LotusCMS (High-Tech Bridge SA)
- HTB22884: XSS vulnerability in LotusCMS (High-Tech Bridge SA)
- HTB22885: XSS vulnerability in LotusCMS (High-Tech Bridge SA)
- HTB22887: XSS vulnerability in LotusCMS (High-Tech Bridge SA)
- HTB22888: File Content Disclosure in LotusCMS (High-Tech Bridge SA)