SonicWALL Viewpoint Multiple Cross Site Scripting and HTML Injection Vulnerabilities
BID:49759
Info
SonicWALL Viewpoint Multiple Cross Site Scripting and HTML Injection Vulnerabilities
| Bugtraq ID: | 49759 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 26 2011 12:00AM |
| Updated: | Sep 26 2011 12:00AM |
| Credit: | Benjamin Kunz Mejri |
| Vulnerable: |
SonicWALL Viewpoint 6.0 |
| Not Vulnerable: | |
Discussion
SonicWALL Viewpoint Multiple Cross Site Scripting and HTML Injection Vulnerabilities
SonicWALL Viewpoint is prone to multiple cross-site scripting and HTML-injection vulnerabilities because it fails to properly sanitize user-supplied input.
An attacker could leverage the cross-site scripting issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.
Attacker-supplied HTML and script code would run in the context of the affected browser, potentially allowing the attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user. Other attacks are also possible.
SonicWALL Viewpoint versions 6.x and prior are vulnerable.
SonicWALL Viewpoint is prone to multiple cross-site scripting and HTML-injection vulnerabilities because it fails to properly sanitize user-supplied input.
An attacker could leverage the cross-site scripting issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.
Attacker-supplied HTML and script code would run in the context of the affected browser, potentially allowing the attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user. Other attacks are also possible.
SonicWALL Viewpoint versions 6.x and prior are vulnerable.
Exploit / POC
SonicWALL Viewpoint Multiple Cross Site Scripting and HTML Injection Vulnerabilities
An attacker can exploit these issues by enticing an unsuspecting user to follow a malicious URI.
An attacker can exploit these issues by enticing an unsuspecting user to follow a malicious URI.
Solution / Fix
SonicWALL Viewpoint Multiple Cross Site Scripting and HTML Injection Vulnerabilities
Solution:
Reportedly, the vendor has fixed the issue; however, Symantec has not confirmed this. Please contact the vendor for more information.
Solution:
Reportedly, the vendor has fixed the issue; however, Symantec has not confirmed this. Please contact the vendor for more information.
References
SonicWALL Viewpoint Multiple Cross Site Scripting and HTML Injection Vulnerabilities
References:
References:
- Product Homepage (Sonicwall)
- Sonicwall Viewpoint v6.x - Multiple Web Vulnerabilities (vulnerability lab)