JQuery 'ui/jquery.ui.dialog.js' Cross Site Scripting Vulnerability
BID:71106
Info
JQuery 'ui/jquery.ui.dialog.js' Cross Site Scripting Vulnerability
| Bugtraq ID: | 71106 |
| Class: | Input Validation Error |
| CVE: |
CVE-2010-5312 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 26 2012 12:00AM |
| Updated: | Oct 26 2016 12:12AM |
| Credit: | shadowman131 |
| Vulnerable: |
Redhat Enterprise Linux Workstation 6 Redhat Enterprise Linux Server 6 Redhat Enterprise Linux HPC Node Optional 6 Redhat Enterprise Linux HPC Node 6 Redhat Enterprise Linux Desktop Optional 6 Redhat Enterprise Linux Desktop 6 Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 Oracle Application Express 5.0.4 Oracle Application Express 5.0.3 Oracle Application Express 5.0.2 Oracle Application Express 5.0.1 Oracle Application Express 4.2.6 Oracle Application Express 4.2.1 Oracle Application Express 2.2.1 Oracle Application Express 1.1.3 Oracle Application Express 1.1.1 Oracle Application Express 4.2 Oracle Application Express 4.1 Oracle Application Express 4.0 Oracle Application Express 3.2.0.00.27 Oracle Application Express 3.2 Oracle Application Express 2.2 Oracle Application Express 2.1 Oracle Application Express 2.0 Oracle Application Express 1.5 jQuery jQuery 1.6.3 jQuery jQuery 1.6.2 jQuery jQuery 1.6.1 jQuery jQuery 1.4.2 jQuery jQuery 1.2.6 jQuery jQuery 1.0.1 jQuery jQuery 1.0 jQuery jQuery 1.8.1 jQuery jQuery 1.8.0 jQuery jQuery 1.7.2 jQuery jQuery 1.7.1 jQuery jQuery 1.6.4 jQuery jQuery 1.6 Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 Avaya one-X Client Enablement Services 6.2 SP2 Avaya one-X Client Enablement Services 6.2 Asperasoft Aspera Shares 1.8.1 Asperasoft Aspera Shares 1.7.5 Asperasoft Aspera Shares 1.7.3 Asperasoft Aspera Shares 1.0.1 Asperasoft Aspera Faspex 3.8.1 Asperasoft Aspera Faspex 3.7.7 Asperasoft Aspera Faspex 3.7.5 Asperasoft Aspera Faspex 3.0.3 |
| Not Vulnerable: |
Oracle Application Express 5.0.4.0.7 jQuery jQuery 1.10 Asperasoft Aspera Shares 1.9.1 Asperasoft Aspera Faspex 3.9.1 |
Discussion
JQuery 'ui/jquery.ui.dialog.js' Cross Site Scripting Vulnerability
JQuery is prone to a cross-site-scripting vulnerability because it fails to sufficiently sanitize user-supplied input.
An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
Versions prior to JQuery 1.10.0 are vulnerable.
JQuery is prone to a cross-site-scripting vulnerability because it fails to sufficiently sanitize user-supplied input.
An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
Versions prior to JQuery 1.10.0 are vulnerable.
Exploit / POC
JQuery 'ui/jquery.ui.dialog.js' Cross Site Scripting Vulnerability
To exploit this issue an attacker must entice an unsuspecting victim to follow a malicious URI.
To exploit this issue an attacker must entice an unsuspecting victim to follow a malicious URI.
Solution / Fix
JQuery 'ui/jquery.ui.dialog.js' Cross Site Scripting Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
JQuery 'ui/jquery.ui.dialog.js' Cross Site Scripting Vulnerability
References:
References:
- jQuery UI 1.10.0 Changelog (JQuery)
- Dialog: Extract setting the title into a _title method, use .text() (shadowman131)
- JQuery Home Page (JQuery )
- Security Bulletin: jQuery UI title/default content cross-site scripting (CVE-201 (IBM)
- Critical Patch Security Advisory - October 2016 (Oracle)
- ipa security and bug fix update (RHSA-2015-1462) (Avaya)