GLPI Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
BID:54416
Info
GLPI Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
| Bugtraq ID: | 54416 |
| Class: | Input Validation Error |
| CVE: |
CVE-2012-4002 CVE-2012-4003 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 12 2012 12:00AM |
| Updated: | Apr 13 2015 09:40PM |
| Credit: | Prajal Kulkarni |
| Vulnerable: |
MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 GLPI GLPI 0.72.4 GLPI GLPI 0.71.4 GLPI GLPI 0.71.3 GLPI GLPI 0.68.3 GLPI GLPI 0.80.7 GLPI GLPI 0.80.61 GLPI GLPI 0.80.2 GLPI GLPI 0.80 GLPI GLPI 0.78 |
| Not Vulnerable: | |
Discussion
GLPI Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
GLPI is prone to a cross-site scripting vulnerability and a cross-site request-forgery vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit these vulnerabilities to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, to steal cookie-based authentication credentials, to disclose or modify sensitive information, or to perform unauthorized actions. Other attacks are also possible.
GLPI versions prior to 0.83.3 are vulnerable.
GLPI is prone to a cross-site scripting vulnerability and a cross-site request-forgery vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit these vulnerabilities to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, to steal cookie-based authentication credentials, to disclose or modify sensitive information, or to perform unauthorized actions. Other attacks are also possible.
GLPI versions prior to 0.83.3 are vulnerable.
Exploit / POC
GLPI Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
To exploit these issues, an attacker must entice an unsuspecting victim to follow a malicious URI or to visit a malicious website.
To exploit these issues, an attacker must entice an unsuspecting victim to follow a malicious URI or to visit a malicious website.
Solution / Fix
GLPI Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
Solution:
Updates are available. Please see the references for more details.
MandrakeSoft Enterprise Server 5
MandrakeSoft Enterprise Server 5 x86_64
Solution:
Updates are available. Please see the references for more details.
MandrakeSoft Enterprise Server 5
-
Mandriva glpi-0.83.4-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-archires-2.0.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-datainjection-2.2.2-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-fusioninventory-2.4.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-fusioninventory-deploy-2.4.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-fusioninventory-inventory-2.4.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-fusioninventory-snmp-2.4.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-genericobject-2.1.3-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-manufacturersimports-1.5.2-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-massocsimport-1.6.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-racks-1.3.2-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-reports-1.6.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-webservices-1.3.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/
MandrakeSoft Enterprise Server 5 x86_64
-
Mandriva glpi-0.83.4-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-archires-2.0.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-datainjection-2.2.2-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-fusioninventory-2.4.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-fusioninventory-deploy-2.4.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-fusioninventory-inventory-2.4.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-fusioninventory-snmp-2.4.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-genericobject-2.1.3-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-manufacturersimports-1.5.2-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-massocsimport-1.6.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-racks-1.3.2-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-reports-1.6.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva glpi-plugin-webservices-1.3.1-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/
References
GLPI Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
References:
References:
- Bug #3704 (GLPI)
- Bug #3705 (GLPI)
- Bug #3707 (GLPI)
- GLPI 0.83.3 (GLPI)
- GLPI 0.83.31 disponible / Available (GLPI)
- GLPI Homepage (GLPI)