Atrise Everyfind search Cross-Site Scripting Vulnerability
BID:8740
Info
Atrise Everyfind search Cross-Site Scripting Vulnerability
| Bugtraq ID: | 8740 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 01 2003 12:00AM |
| Updated: | Oct 01 2003 12:00AM |
| Credit: | The disclosure of this issue has been credited to Ezhilan of Sintelli. |
| Vulnerable: |
Atrise Everyfind 5.0.2 |
| Not Vulnerable: | |
Discussion
Atrise Everyfind search Cross-Site Scripting Vulnerability
It has been reported that Atrise Everyfind is prone to a cross-site scripting vulnerability due to insufficient sanitization of user-supplied input. The problem exists in the search module of the software. This issue may allow a remote attacker to execute HTML or script code in user's browser.
Successful exploitation of this vulnerability may allow an attacker to steal cookie-based authentication credentials. Other attacks may well be possible.
Atrise Everyfind 5.02 has been listed as a vulnerable package, however other versions may be affected as well.
It has been reported that Atrise Everyfind is prone to a cross-site scripting vulnerability due to insufficient sanitization of user-supplied input. The problem exists in the search module of the software. This issue may allow a remote attacker to execute HTML or script code in user's browser.
Successful exploitation of this vulnerability may allow an attacker to steal cookie-based authentication credentials. Other attacks may well be possible.
Atrise Everyfind 5.02 has been listed as a vulnerable package, however other versions may be affected as well.
Exploit / POC
Atrise Everyfind search Cross-Site Scripting Vulnerability
The following proof of concept was provided:
http://www.example.com/search.html?cat=0&keys=<script>alert("hello")</script><script>alert.document.cookie)</script>
The following proof of concept was provided:
http://www.example.com/search.html?cat=0&keys=<script>alert("hello")</script><script>alert.document.cookie)</script>
Solution / Fix
Atrise Everyfind search Cross-Site Scripting Vulnerability
Solution:
The vendor has released a new version (Atrise Everyfind 5.03) of the affected software to address this issue. Please see the referenced site for more information.
Solution:
The vendor has released a new version (Atrise Everyfind 5.03) of the affected software to address this issue. Please see the referenced site for more information.
References
Atrise Everyfind search Cross-Site Scripting Vulnerability
References:
References:
- Everyfind (Atrise)
- Everyfind Versions (Atrise)