L-Soft Listserv Multiple Cross-Site Scripting Vulnerabilities
BID:9307
Info
L-Soft Listserv Multiple Cross-Site Scripting Vulnerabilities
| Bugtraq ID: | 9307 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 26 2003 12:00AM |
| Updated: | Dec 26 2003 12:00AM |
| Credit: | Discovery of this issue is credited to http-equiv. |
| Vulnerable: |
L-Soft Listserv 1.8 e L-Soft Listserv 1.8 d L-Soft Listserv 1.8 c L-Soft Listserv 1.8 |
| Not Vulnerable: | |
Discussion
L-Soft Listserv Multiple Cross-Site Scripting Vulnerabilities
Multiple cross-site scripting vulnerabilities have been reported in L-Soft Listserv. An attacker may exploit these issues by embedding hostile HTML and script code in a link to a site hosting the software. This could permit theft of cookie-based authentication credentials or other attacks. These issues could also provide an attack vector for latent vulnerabilities in web browser software.
Multiple cross-site scripting vulnerabilities have been reported in L-Soft Listserv. An attacker may exploit these issues by embedding hostile HTML and script code in a link to a site hosting the software. This could permit theft of cookie-based authentication credentials or other attacks. These issues could also provide an attack vector for latent vulnerabilities in web browser software.
Exploit / POC
L-Soft Listserv Multiple Cross-Site Scripting Vulnerabilities
The following examples were provided:
http://www.example.com/SCRIPTS/WA-MSD.EXE?A0=<IMG%
20SRC=javascript:document['write'](location)>&T=malware is in the
zone<object>
http://www.example.com/SCRIPTS/WA-USIAINFO.EXE?
A1=<img>ind0312d&L=dosback
http://www.example.com/Scripts/wa-demo.exe?A1=ind9807&L=demo<img>
The following examples were provided:
http://www.example.com/SCRIPTS/WA-MSD.EXE?A0=<IMG%
20SRC=javascript:document['write'](location)>&T=malware is in the
zone<object>
http://www.example.com/SCRIPTS/WA-USIAINFO.EXE?
A1=<img>ind0312d&L=dosback
http://www.example.com/Scripts/wa-demo.exe?A1=ind9807&L=demo<img>
Solution / Fix
L-Soft Listserv Multiple Cross-Site Scripting Vulnerabilities
Solution:
The vendor has released a patch for Windows versions. Patches for other platforms are still pending release.
L-Soft Listserv 1.8 e
Solution:
The vendor has released a patch for Windows versions. Patches for other platforms are still pending release.
L-Soft Listserv 1.8 e
-
L-Soft wa.exe
Windows Patch
ftp://ftp.lsoft.com/listserv/windows/wa.exe
References
L-Soft Listserv Multiple Cross-Site Scripting Vulnerabilities
References:
References:
- Listserv Product Home Page (L-Soft)
- Re: DANGER ZONE: Internet Explorer (Ben Parker )
- DANGER ZONE: Internet Explorer ("[email protected]" <[email protected]>)