Phorum Reply Email Address Script Injection Vulnerability
BID:4739
Info
Phorum Reply Email Address Script Injection Vulnerability
| Bugtraq ID: | 4739 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 13 2002 12:00AM |
| Updated: | May 13 2002 12:00AM |
| Credit: | Discovered by frog frog <[email protected]>. |
| Vulnerable: |
Phorum Phorum 3.3.2 a |
| Not Vulnerable: | |
Discussion
Phorum Reply Email Address Script Injection Vulnerability
Phorum is a PHP based web forums package.
It has been reported possible to inject script code into the body of a message response. The attacker's script code may be executed in the web client of arbitrary users who view the malicious post.
Attackers may potentially exploit this issue to hijack web content or to steal cookie-based authentication credentials.
Phorum is a PHP based web forums package.
It has been reported possible to inject script code into the body of a message response. The attacker's script code may be executed in the web client of arbitrary users who view the malicious post.
Attackers may potentially exploit this issue to hijack web content or to steal cookie-based authentication credentials.
Exploit / POC
Phorum Reply Email Address Script Injection Vulnerability
Reportedly, setting the email address of a reply to "><script>SCRIPT</script> is sufficient to exploit this vulnerability.
Reportedly, setting the email address of a reply to "><script>SCRIPT</script> is sufficient to exploit this vulnerability.
Solution / Fix
Phorum Reply Email Address Script Injection Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Phorum Reply Email Address Script Injection Vulnerability
References:
References:
- Phorum Homepage (Phorum)
- Security holes : Pseudo-Frame, PG, KvPoll, Phorum, BanMat (frog frog
)