Greenstone Multiple Security Vulnerabilities
BID:56662
Info
Greenstone Multiple Security Vulnerabilities
| Bugtraq ID: | 56662 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 23 2012 12:00AM |
| Updated: | Nov 23 2012 12:00AM |
| Credit: | Akastep |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Greenstone Multiple Security Vulnerabilities
Greenstone is prone to the following security vulnerabilities:
1. A file-disclosure vulnerability
2. A cross-site scripting vulnerability
3. A security weakness
4. A security-bypass vulnerability
Attackers can exploit these issues to view local files, bypass certain security restriction, steal cookie-based authentication, or execute arbitrary scripts in the context of the browser.
Greenstone is prone to the following security vulnerabilities:
1. A file-disclosure vulnerability
2. A cross-site scripting vulnerability
3. A security weakness
4. A security-bypass vulnerability
Attackers can exploit these issues to view local files, bypass certain security restriction, steal cookie-based authentication, or execute arbitrary scripts in the context of the browser.
Exploit / POC
Greenstone Multiple Security Vulnerabilities
Attackers can exploit these issues through a browser. To exploit a cross-site scripting vulnerability, an attacker must entice an unsuspecting user to follow a malicious URI.
The following example URI and example data are available:
http://www.example.com/gsdl/cgi-bin/library.cgi?a=status&p=collectioninfo&pr=7&c=alert("OwnEd");
Attackers can exploit these issues through a browser. To exploit a cross-site scripting vulnerability, an attacker must entice an unsuspecting user to follow a malicious URI.
The following example URI and example data are available:
http://www.example.com/gsdl/cgi-bin/library.cgi?a=status&p=collectioninfo&pr=7&c=alert("OwnEd");
Solution / Fix
Greenstone Multiple Security Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].