AeroMail Cross Site Request Forgery, HTML Injection and Cross Site Scripting Vulnerabilities
BID:48510
Info
AeroMail Cross Site Request Forgery, HTML Injection and Cross Site Scripting Vulnerabilities
| Bugtraq ID: | 48510 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 30 2011 12:00AM |
| Updated: | Jun 30 2011 12:00AM |
| Credit: | Justin Klein Keane |
| Vulnerable: |
AeroMail AeroMail 2.80 |
| Not Vulnerable: | |
Discussion
AeroMail Cross Site Request Forgery, HTML Injection and Cross Site Scripting Vulnerabilities
AeroMail is prone to multiple remote vulnerabilities, including:
1. A cross-site scripting vulnerability.
2. Multiple HTML-injection vulnerabilities.
3. Multiple cross-site request forgery vulnerabilities.
The attacker can exploit the cross-site scripting issue to execute arbitrary script code in the context of the vulnerable site, potentially allowing the attacker to steal cookie-based authentication credentials. The attacker may also be perform certain administrative functions and delete arbitrary files. Other attacks are also possible.
AeroMail is prone to multiple remote vulnerabilities, including:
1. A cross-site scripting vulnerability.
2. Multiple HTML-injection vulnerabilities.
3. Multiple cross-site request forgery vulnerabilities.
The attacker can exploit the cross-site scripting issue to execute arbitrary script code in the context of the vulnerable site, potentially allowing the attacker to steal cookie-based authentication credentials. The attacker may also be perform certain administrative functions and delete arbitrary files. Other attacks are also possible.
Exploit / POC
AeroMail Cross Site Request Forgery, HTML Injection and Cross Site Scripting Vulnerabilities
An attacker must trick an unsuspecting victim into following a malicious URI to exploit these issues. An attacker can exploit the HTML-injection issues through a browser.
The following exploit code is available:
An attacker must trick an unsuspecting victim into following a malicious URI to exploit these issues. An attacker can exploit the HTML-injection issues through a browser.
The following exploit code is available:
Solution / Fix
AeroMail Cross Site Request Forgery, HTML Injection and Cross Site Scripting Vulnerabilities
Solution:
A third party patch is available. Please see the references for details.
Solution:
A third party patch is available. Please see the references for details.
References
AeroMail Cross Site Request Forgery, HTML Injection and Cross Site Scripting Vulnerabilities
References:
References:
- AeroMail 2 Homepage (AeroMail)