Mozilla Firefox Sage Extension RSS Feeds HTML Injection Vulnerability
BID:49569
Info
Mozilla Firefox Sage Extension RSS Feeds HTML Injection Vulnerability
| Bugtraq ID: | 49569 |
| Class: | Input Validation Error |
| CVE: |
CVE-2011-3384 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 12 2011 12:00AM |
| Updated: | Sep 12 2011 12:00AM |
| Credit: | Yosuke HASEGAWA of NetAgent Co.,Ltd |
| Vulnerable: |
Peter Andrews Sage 1.3.10 |
| Not Vulnerable: | |
Discussion
Mozilla Firefox Sage Extension RSS Feeds HTML Injection Vulnerability
The Sage extension for Mozilla Firefox is prone to an HTML-injection vulnerability.
Attackers can exploit this issue to run arbitrary code within the context of the site. This may allow attackers to steal cookie-based authentication credentials and launch other other attacks.
Sage 1.3.10 is vulnerable and prior are vulnerable.
The Sage extension for Mozilla Firefox is prone to an HTML-injection vulnerability.
Attackers can exploit this issue to run arbitrary code within the context of the site. This may allow attackers to steal cookie-based authentication credentials and launch other other attacks.
Sage 1.3.10 is vulnerable and prior are vulnerable.
Exploit / POC
Mozilla Firefox Sage Extension RSS Feeds HTML Injection Vulnerability
An attacker must entice a user to subscribe to a malicious feed with the affected extension.
An attacker must entice a user to subscribe to a malicious feed with the affected extension.
Solution / Fix
Mozilla Firefox Sage Extension RSS Feeds HTML Injection Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
References
Mozilla Firefox Sage Extension RSS Feeds HTML Injection Vulnerability
References:
References:
- JVN#30221194 Sage vulnerable to arbitrary script execution (JVN)
- Sage Homepage (Peter Andrews)