Macromedia Dreamweaver MX PHP User Authentication Suite Cross-Site-Scripting Vulnerability
BID:8339
Info
Macromedia Dreamweaver MX PHP User Authentication Suite Cross-Site-Scripting Vulnerability
| Bugtraq ID: | 8339 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 04 2003 12:00AM |
| Updated: | Aug 04 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to "Lorenzo Hernandez Garcia-Hierro" <[email protected]>. |
| Vulnerable: |
Macromedia Dreamweaver MX 6.0 |
| Not Vulnerable: | |
Discussion
Macromedia Dreamweaver MX PHP User Authentication Suite Cross-Site-Scripting Vulnerability
It is possible to create an authentication or access control page, using Dreamweaver MX PHP Authentication Suite. This script will generate an error page that contains dynamic content when a user fails to authenticate correctly to the site.
A cross-site-scripting vulnerability has been reported to affect PHP authentication functions used in PHP access control pages created with the Macromedia Dreamweaver MX PHP Authentication Suite.
An attacker may exploit this condition to execute arbitrary HTML code in the browser of an unsuspecting user.
It is possible to create an authentication or access control page, using Dreamweaver MX PHP Authentication Suite. This script will generate an error page that contains dynamic content when a user fails to authenticate correctly to the site.
A cross-site-scripting vulnerability has been reported to affect PHP authentication functions used in PHP access control pages created with the Macromedia Dreamweaver MX PHP Authentication Suite.
An attacker may exploit this condition to execute arbitrary HTML code in the browser of an unsuspecting user.
Exploit / POC
Macromedia Dreamweaver MX PHP User Authentication Suite Cross-Site-Scripting Vulnerability
The following proof of concept has been supplied:
http://www.example.com/[PATH]/[LOGIN PAGE].php?[ACCESS DENIED VARIABLE]
="><script>alert('.::\/\|NSRG-18-7|/\/::.');</script>
The following proof of concept has been supplied:
http://www.example.com/[PATH]/[LOGIN PAGE].php?[ACCESS DENIED VARIABLE]
="><script>alert('.::\/\|NSRG-18-7|/\/::.');</script>
Solution / Fix
Macromedia Dreamweaver MX PHP User Authentication Suite Cross-Site-Scripting Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Macromedia Dreamweaver MX PHP User Authentication Suite Cross-Site-Scripting Vulnerability
References:
References:
- Macromedia Homepage (Macromedia)
- Macromedia DW MX PHP Authentication Suit Vulnerabilities ("Lorenzo Hernandez Garcia-Hierro"
)