Skype 'Mobile Phone' Field HTML Injection Vulnerability
BID:48951
Info
Skype 'Mobile Phone' Field HTML Injection Vulnerability
| Bugtraq ID: | 48951 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 01 2011 12:00AM |
| Updated: | Aug 01 2011 12:00AM |
| Credit: | noptrix |
| Vulnerable: |
Skype Technologies Skype 4.2 169 Skype Technologies Skype 4.2 155 Skype Technologies Skype 4.2 152 Skype Technologies Skype 4.1 .179 Skype Technologies Skype 4.1 .179 Skype Technologies Skype 4.1 .166 Skype Technologies Skype 4.1 .141 Skype Technologies Skype 4.1 .136 Skype Technologies Skype 4.1 .130 Skype Technologies Skype 4.0 .227 Skype Technologies Skype 4.0 .226 Skype Technologies Skype 4.0 .224 Skype Technologies Skype 4.0 .216 Skype Technologies Skype 4.0 .215 Skype Technologies Skype 4.0 .206 Skype Technologies Skype 5.3.0.120 Skype Technologies Skype 5.3 Skype Technologies Skype 5.0.0.105 Skype Technologies Skype 4.2.0.166 Skype Technologies Skype 4.2.0.163 Skype Technologies Skype 4.2.0.158 |
| Not Vulnerable: | |
Discussion
Skype 'Mobile Phone' Field HTML Injection Vulnerability
Skype is prone to an HTML-injection vulnerability because it fails to properly sanitize user-supplied input before using it in dynamically generated content.
Successful exploits will allow attacker-supplied HTML and script code to run in the context of the affected browser, potentially allowing the attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user. Other attacks are also possible.
Skype 5.3.0.120 and prior are vulnerable; other versions may also be affected.
Skype is prone to an HTML-injection vulnerability because it fails to properly sanitize user-supplied input before using it in dynamically generated content.
Successful exploits will allow attacker-supplied HTML and script code to run in the context of the affected browser, potentially allowing the attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user. Other attacks are also possible.
Skype 5.3.0.120 and prior are vulnerable; other versions may also be affected.
Exploit / POC
Skype 'Mobile Phone' Field HTML Injection Vulnerability
Attackers can use a browser to exploit this issue.
The following sample input is available:
"><iframe src='' onload=alert('mphone')>
A video demonstrating the attack is available. Please see the references for more information.
Attackers can use a browser to exploit this issue.
The following sample input is available:
"><iframe src='' onload=alert('mphone')>
A video demonstrating the attack is available. Please see the references for more information.
Solution / Fix
Skype 'Mobile Phone' Field HTML Injection Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Skype 'Mobile Phone' Field HTML Injection Vulnerability
References:
References:
- Skype Homepage (Skype Technologies)
- Skype XSS (noptrix)