PHPRank Add.PHP Cross-Site Scripting Vulnerability
BID:5945
Info
PHPRank Add.PHP Cross-Site Scripting Vulnerability
| Bugtraq ID: | 5945 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 10 2002 12:00AM |
| Updated: | Oct 10 2002 12:00AM |
| Credit: | Vulnerability discovery credited to Jedi/Sector One <[email protected]>. |
| Vulnerable: |
phpRank phpRank 1.8 |
| Not Vulnerable: | |
Discussion
PHPRank Add.PHP Cross-Site Scripting Vulnerability
phpRank is a freely available web site link sharing script. It is available for Unix, Linux, and Microsoft operating systems.
It has been reported that phpRank is vulnerable to cross-site scripting attacks. Under some circumstances, it is possible to force the rendering of arbitrary HTML and script code through the add.php portion of the phpRank package. This could allow the execution of potentially malicious script and HTML in the security context of a vulnerable site.
phpRank is a freely available web site link sharing script. It is available for Unix, Linux, and Microsoft operating systems.
It has been reported that phpRank is vulnerable to cross-site scripting attacks. Under some circumstances, it is possible to force the rendering of arbitrary HTML and script code through the add.php portion of the phpRank package. This could allow the execution of potentially malicious script and HTML in the security context of a vulnerable site.
Exploit / POC
PHPRank Add.PHP Cross-Site Scripting Vulnerability
The following proof of concept has been made available by Jedi/Sector One <[email protected]>:
http://example.com/phprank/add.php?page=add&spass=1&name=2&siteurl=3&email=%3Cscript%3Ealert(42)%3C/script%3E
The following proof of concept has been made available by Jedi/Sector One <[email protected]>:
http://example.com/phprank/add.php?page=add&spass=1&name=2&siteurl=3&email=%3Cscript%3Ealert(42)%3C/script%3E
Solution / Fix
PHPRank Add.PHP Cross-Site Scripting Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.