TimThumb Multiple Denial of Service and Cross-Site Scripting Vulnerabilities
BID:47374
Info
TimThumb Multiple Denial of Service and Cross-Site Scripting Vulnerabilities
| Bugtraq ID: | 47374 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 14 2011 12:00AM |
| Updated: | Apr 13 2012 07:10PM |
| Credit: | Reported by the vendor |
| Vulnerable: |
WordPress SH Slideshow 3.1.7 WordPress Magazeen Theme 1.0 Timthumb Timthumb 1.1 Pro Theme Design WordPress Mimbo Pro Magazine Theme 0 Dotclear Magazeen Theme 1.0 |
| Not Vulnerable: |
WordPress SH Slideshow 3.1.8 |
Discussion
TimThumb Multiple Denial of Service and Cross-Site Scripting Vulnerabilities
TimThumb is prone to a denial-of-service vulnerabilities and multiple cross-site scripting vulnerabilities.
An attacker can exploit these issues to cause denial-of-service conditions or to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site and steal cookie-based authentication credentials.
TimThumb is prone to a denial-of-service vulnerabilities and multiple cross-site scripting vulnerabilities.
An attacker can exploit these issues to cause denial-of-service conditions or to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site and steal cookie-based authentication credentials.
Exploit / POC
TimThumb Multiple Denial of Service and Cross-Site Scripting Vulnerabilities
An attacker can exploit the denial-of-service issues with a browser. To exploit a cross-site scripting vulnerability, the attacker must entice a victim user to follow a malicious URI.
An attacker can exploit the denial-of-service issues with a browser. To exploit a cross-site scripting vulnerability, the attacker must entice a victim user to follow a malicious URI.
Solution / Fix
TimThumb Multiple Denial of Service and Cross-Site Scripting Vulnerabilities
Solution:
The vendor released an update in the SVN repository. Please see the references for details.
Solution:
The vendor released an update in the SVN repository. Please see the references for details.
References
TimThumb Multiple Denial of Service and Cross-Site Scripting Vulnerabilities
References:
References:
- Issue 49: Cross-site Script Vulnerability - can inject javascript into URI (TimThumb)
- Issue 123: Problem with IE8 display (TimThumb)
- Issue 88: Path of the image not correct? (TimThumb)
- SH Slideshow ChangeLog (Wordpress)
- SH Slideshow Homepage (Wordpress)
- The application handles overly large remote image data improperly, which can be (TimThumb)
- Vendor Homepage (TimThumb)
- Vulnerabilities in Magazeen theme for WordPress and Dotclear (MustLive)
- Vulnerability in Mimbo Pro theme for WordPress (MustLive)
- WordPress Mimbo Pro Magazine Theme (Pro Theme Design)