Drupal Views Bulk Operations 'Modify node taxonomy terms' Action HTML Injection Vulnerability
BID:49727
CVE-2011-3373 |Info
Drupal Views Bulk Operations 'Modify node taxonomy terms' Action HTML Injection Vulnerability
| Bugtraq ID: | 49727 |
| Class: | Input Validation Error |
| CVE: |
CVE-2011-3373 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 21 2011 12:00AM |
| Updated: | Apr 13 2015 10:25PM |
| Credit: | Jim Berry |
| Vulnerable: |
Drupal Views bulk operations 6.x-1.7 Drupal Views bulk operations 6.x-1.4 Drupal Views bulk operations 6.x-1.3 Drupal Views bulk operations 6.x-1.2 Drupal Views bulk operations 6.X-1.10 Drupal Views bulk operations 6.x-1.10 Drupal Views bulk operations 6.x-1.1 Drupal Views bulk operations 6.x-1.0 |
| Not Vulnerable: |
Drupal Views bulk operations 6.x-1.11 |
Discussion
Drupal Views Bulk Operations 'Modify node taxonomy terms' Action HTML Injection Vulnerability
The Drupal Views bulk operations module is prone to a HTML-injection vulnerability because it fails to sufficiently sanitize user-supplied data.
An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials or control how the site is rendered to the user. Other attacks are also possible.
Versions prior to Views Bulk Operations 6.x-1.11 are vulnerable.
The Drupal Views bulk operations module is prone to a HTML-injection vulnerability because it fails to sufficiently sanitize user-supplied data.
An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials or control how the site is rendered to the user. Other attacks are also possible.
Versions prior to Views Bulk Operations 6.x-1.11 are vulnerable.
Exploit / POC
Drupal Views Bulk Operations 'Modify node taxonomy terms' Action HTML Injection Vulnerability
An attacker can exploit this issue with a browser.
An attacker can exploit this issue with a browser.
Solution / Fix
Drupal Views Bulk Operations 'Modify node taxonomy terms' Action HTML Injection Vulnerability
Solution:
Vendor updates are available. Please see the references for more information.
Drupal Views bulk operations 6.x-1.3
Drupal Views bulk operations 6.x-1.4
Drupal Views bulk operations 6.x-1.7
Drupal Views bulk operations 6.X-1.10
Drupal Views bulk operations 6.x-1.10
Drupal Views bulk operations 6.x-1.2
Drupal Views bulk operations 6.x-1.1
Drupal Views bulk operations 6.x-1.0
Solution:
Vendor updates are available. Please see the references for more information.
Drupal Views bulk operations 6.x-1.3
-
Drupal views_bulk_operations 6.x-1.11
http://drupal.org/node/1286778
Drupal Views bulk operations 6.x-1.4
-
Drupal views_bulk_operations 6.x-1.11
http://drupal.org/node/1286778
Drupal Views bulk operations 6.x-1.7
-
Drupal views_bulk_operations 6.x-1.11
http://drupal.org/node/1286778
Drupal Views bulk operations 6.X-1.10
-
Drupal views_bulk_operations 6.x-1.11
http://drupal.org/node/1286778
Drupal Views bulk operations 6.x-1.10
-
Drupal views_bulk_operations 6.x-1.11
http://drupal.org/node/1286778
Drupal Views bulk operations 6.x-1.2
-
Drupal views_bulk_operations 6.x-1.11
http://drupal.org/node/1286778
Drupal Views bulk operations 6.x-1.1
-
Drupal views_bulk_operations 6.x-1.11
http://drupal.org/node/1286778
Drupal Views bulk operations 6.x-1.0
-
Drupal views_bulk_operations 6.x-1.11
http://drupal.org/node/1286778
References
Drupal Views Bulk Operations 'Modify node taxonomy terms' Action HTML Injection Vulnerability
References:
References:
- Drupal Language Switcher Dropdown Homepage (Drupal)
- SA-CONTRIB-2011-042 Views Bulk Operations - Cross Site Scripting (Drupal Security Team )
- Views bulk operations Homepage (Drupal)