WordPress Contact Form DB Plugin Multiple Cross Site Scripting Vulnerabilities
BID:70374
Info
WordPress Contact Form DB Plugin Multiple Cross Site Scripting Vulnerabilities
| Bugtraq ID: | 70374 |
| Class: | Input Validation Error |
| CVE: |
CVE-2014-7139 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 08 2014 12:00AM |
| Updated: | Oct 08 2014 12:00AM |
| Credit: | High-Tech Bridge Security Research |
| Vulnerable: |
WordPress Contact Form DB 2.8.13 |
| Not Vulnerable: |
WordPress Contact Form DB 2.8.16 |
Discussion
WordPress Contact Form DB Plugin Multiple Cross Site Scripting Vulnerabilities
The Contact Form DB plugin for WordPress is prone to multiple cross-site scripting vulnerabilities because it fails to sufficiently sanitize user-supplied input.
An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
Contact Form DB 2.8.13 and prior are vulnerable.
The Contact Form DB plugin for WordPress is prone to multiple cross-site scripting vulnerabilities because it fails to sufficiently sanitize user-supplied input.
An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
Contact Form DB 2.8.13 and prior are vulnerable.
Exploit / POC
WordPress Contact Form DB Plugin Multiple Cross Site Scripting Vulnerabilities
To exploit these issues, an attacker must entice an unsuspecting victim to follow a malicious URI.
The following example URI's are available:
http://www.example.com/wp-admin/admin.php?page=CF7DBPluginShortCodeBuilder&form=%27%22%3E%3Cscript%3Ealert%28/immuniweb/%29;%3C/script%3E
http://www.example.com/wp-admin/admin.php?page=CF7DBPluginShortCodeBuilder&enc=%27%22%29;%3Cscript%3Ealert%28/immuniweb/%29;%3C/script%3E
To exploit these issues, an attacker must entice an unsuspecting victim to follow a malicious URI.
The following example URI's are available:
http://www.example.com/wp-admin/admin.php?page=CF7DBPluginShortCodeBuilder&form=%27%22%3E%3Cscript%3Ealert%28/immuniweb/%29;%3C/script%3E
http://www.example.com/wp-admin/admin.php?page=CF7DBPluginShortCodeBuilder&enc=%27%22%29;%3Cscript%3Ealert%28/immuniweb/%29;%3C/script%3E
References
WordPress Contact Form DB Plugin Multiple Cross Site Scripting Vulnerabilities
References:
References:
- Contact Form DB Plugin Homepage (WordPress)
- WordPress HomePage (WordPress)
- Advisories by High-Tech Bridge Security Research Lab (High-Tech Bridge Security Research Lab)