StatsPlus HTTP Header HTML Injection Vulnerability
BID:5316
Info
StatsPlus HTTP Header HTML Injection Vulnerability
| Bugtraq ID: | 5316 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 25 2002 12:00AM |
| Updated: | Jul 25 2002 12:00AM |
| Credit: | Discovery of this issue is credited to "BrainRawt ." <[email protected]>. |
| Vulnerable: |
Uninet StatsPlus 1.25 Windows Uninet StatsPlus 1.25 Unix |
| Not Vulnerable: | |
Discussion
StatsPlus HTTP Header HTML Injection Vulnerability
StatsPlus is prone to HTML injection attacks.
StatsPlus logs information about incoming requests to monitored webpages. HTTP headers such as the HTTP_USER_AGENT and HTTP_REFERER are logged by the software. StatsPlus does not sufficiently sanitize HTML when logging these fields. An attacker may create false HTTP_USER_AGENT and HTTP_REFERER headers which contain arbitrary HTML and script code and it will be stored on the statistics page.
StatsPlus is prone to HTML injection attacks.
StatsPlus logs information about incoming requests to monitored webpages. HTTP headers such as the HTTP_USER_AGENT and HTTP_REFERER are logged by the software. StatsPlus does not sufficiently sanitize HTML when logging these fields. An attacker may create false HTTP_USER_AGENT and HTTP_REFERER headers which contain arbitrary HTML and script code and it will be stored on the statistics page.
Exploit / POC
StatsPlus HTTP Header HTML Injection Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
StatsPlus HTTP Header HTML Injection Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.