Macromedia ColdFusion HTML Injection Vulnerability
BID:6401
Info
Macromedia ColdFusion HTML Injection Vulnerability
| Bugtraq ID: | 6401 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 16 2002 12:00AM |
| Updated: | Dec 16 2002 12:00AM |
| Credit: | This vulnerability was reported by KiLL CoLe <[email protected]>. |
| Vulnerable: |
Allaire ColdFusion Server 5.0 |
| Not Vulnerable: | |
Discussion
Macromedia ColdFusion HTML Injection Vulnerability
A HTML injection vulnerability has been reported for ColdFusion. Reportedly, ColdFusion does not adequately sanitize log entries of malicious HTML code. When certain ColdFusion functions receive inappropriate or faulty data, ColdFusion will generate an exception and write a log entry.
An attacker can exploit this vulnerability to insert malicious HTML code into a function that will trigger the exception and cause a malicious log entry to be written. When some user views the logs, typically the administrator, any malicious HTML code in the logs will be executed in the victim user's browser, in the security context of the host.
This issue may potentially be exploited to hijack web content or steal cookie-based authentication credentials from users.
A HTML injection vulnerability has been reported for ColdFusion. Reportedly, ColdFusion does not adequately sanitize log entries of malicious HTML code. When certain ColdFusion functions receive inappropriate or faulty data, ColdFusion will generate an exception and write a log entry.
An attacker can exploit this vulnerability to insert malicious HTML code into a function that will trigger the exception and cause a malicious log entry to be written. When some user views the logs, typically the administrator, any malicious HTML code in the logs will be executed in the victim user's browser, in the security context of the host.
This issue may potentially be exploited to hijack web content or steal cookie-based authentication credentials from users.
Exploit / POC
Macromedia ColdFusion HTML Injection Vulnerability
There is no exploit code required.
There is no exploit code required.
Solution / Fix
Macromedia ColdFusion HTML Injection Vulnerability
Solution:
A fix for this vulnerability has been reported to be available. Users are advised to contact the vendor for details about obtaining and applying a fix.
Solution:
A fix for this vulnerability has been reported to be available. Users are advised to contact the vendor for details about obtaining and applying a fix.
References
Macromedia ColdFusion HTML Injection Vulnerability
References:
References: