Ikonboard X-Forwarded-For: Proxy Header Field HTML Injection Vulnerability
BID:6343
Info
Ikonboard X-Forwarded-For: Proxy Header Field HTML Injection Vulnerability
| Bugtraq ID: | 6343 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 09 2002 12:00AM |
| Updated: | Dec 09 2002 12:00AM |
| Credit: | Discovery of this issue is credited to 3APA3A <[email protected]>. |
| Vulnerable: |
Ikonboard.com ikonboard 3.1.1 |
| Not Vulnerable: | |
Discussion
Ikonboard X-Forwarded-For: Proxy Header Field HTML Injection Vulnerability
Ikonboard is prone to HTML injection attacks via X-Forwarded-For: HTTP header fields for proxies. When Ikonboard is accessed via a proxy, it will log the user's IP address as the address that appears in the X-Forwarded-For: HTTP header field. HTML will not be sanitized when this information in the HTTP header field is logged. When an administrator views the logged IP address, script code supplied via a malicious X-Forwarded-For: HTTP header field will be executed in the web client of the administrator.
While the data in the header field is limited to 16 characters, it may be possible to embed malicious script code or HTML over multiple requests.
This issue was reported in Ikonboard 3.1.1. Other versions may also be affected.
Ikonboard is prone to HTML injection attacks via X-Forwarded-For: HTTP header fields for proxies. When Ikonboard is accessed via a proxy, it will log the user's IP address as the address that appears in the X-Forwarded-For: HTTP header field. HTML will not be sanitized when this information in the HTTP header field is logged. When an administrator views the logged IP address, script code supplied via a malicious X-Forwarded-For: HTTP header field will be executed in the web client of the administrator.
While the data in the header field is limited to 16 characters, it may be possible to embed malicious script code or HTML over multiple requests.
This issue was reported in Ikonboard 3.1.1. Other versions may also be affected.
Exploit / POC
Ikonboard X-Forwarded-For: Proxy Header Field HTML Injection Vulnerability
No exploit code is required.
No exploit code is required.
Solution / Fix
Ikonboard X-Forwarded-For: Proxy Header Field HTML Injection Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Ikonboard X-Forwarded-For: Proxy Header Field HTML Injection Vulnerability
References:
References:
- Ikonboard Homepage (Ikonboard)