Ikonboard Flash File Script Injection Vulnerability
BID:4986
Info
Ikonboard Flash File Script Injection Vulnerability
| Bugtraq ID: | 4986 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 05 2002 12:00AM |
| Updated: | Jun 05 2002 12:00AM |
| Credit: | Discovered by Obscure <[email protected]>. |
| Vulnerable: |
Ikonboard.com ikonboard 3.0 .1 |
| Not Vulnerable: | |
Discussion
Ikonboard Flash File Script Injection Vulnerability
Ikonboard is a web based bulletin board package implemented in Perl. It may be installed under Linux, Windows, or many Unix platforms. Versions of Ikonboard are subject to a script injection issue via Flash files.
Ikonboard permits users to upload Flash content, however, it is possible to craft a Flash file in such a way that malicious JavaScript is included in the getURL action.
If a user views a post containing the maliciously crafted Flash file, the JavaScript included in the getURL action will execute within the context of the site running Ikonboard.
This issue may be exploited to steal cookie-based authentication credentials from legitimate users of Ikonboard.
Ikonboard is a web based bulletin board package implemented in Perl. It may be installed under Linux, Windows, or many Unix platforms. Versions of Ikonboard are subject to a script injection issue via Flash files.
Ikonboard permits users to upload Flash content, however, it is possible to craft a Flash file in such a way that malicious JavaScript is included in the getURL action.
If a user views a post containing the maliciously crafted Flash file, the JavaScript included in the getURL action will execute within the context of the site running Ikonboard.
This issue may be exploited to steal cookie-based authentication credentials from legitimate users of Ikonboard.
Solution / Fix
Ikonboard Flash File Script Injection Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.