Drupal 4.6.4 / 4.5.6 fixes XSS and HTTP header injection issue

2005.12.03
Credit: Uwe Hermann
Risk: Low
Local: No
Remote: Yes
CWE: CWE-79


CVSS Base Score: 4/10
Impact Subscore: 2.9/10
Exploitability Subscore: 8/10
Exploit range: Remote
Attack complexity: Low
Authentication: Single time
Confidentiality impact: None
Integrity impact: Partial
Availability impact: None

------------------------------------------------------------------------ ---- Drupal security advisory DRUPAL-SA-2005-008 ------------------------------------------------------------------------ ---- Advisory ID: DRUPAL-SA-2005-008 Project: Drupal core Date: 2005-11-30 Security risk: less critical Impact: normal Where: from remote Vulnerability: XSS, HTTP header injection ------------------------------------------------------------------------ ---- Description ----------- Paul Laudanski informed us that it's possible to attach files that are able to run Javascript under Internet Explorer. Further investigation of the problem revealed that the same method can be used to inject arbitrary HTTP headers. Versions affected ----------------- Drupal 4.5.0, 4.5.1, 4.5.2, 4.5.3, 4.5.4, 4.5.5 Drupal 4.6.0, 4.6.1, 4.6.2, 4.6.3 Solution -------- - If you are running Drupal 4.5.x, then upgrade to Drupal 4.5.6. - If you are running Drupal 4.6.x, then upgrade to Drupal 4.6.4. Contact ------- The security contact for Drupal can be reached at security at drupal.org or using the form at http://drupal.org/contact. More information is available from http://drupal.org/security or from our security RSS feed http://drupal.org/security/rss.xml. // Uwe Hermann, on behalf of the Drupal Security Team. -- Uwe Hermann <uwe (at) hermann-uwe (dot) de [email concealed]> http://www.hermann-uwe.de | http://www.crazy-hacks.org http://www.it-services-uh.de | http://www.phpmeat.org http://www.unmaintained-free-software.org | http://www.holsham-traders.de


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top