Papoo CMS - Multiple Cross Site Scripting

2007-06-26 / 2007-06-27
Risk: Low
Local: No
Remote: Yes
CWE: CWE-79


CVSS Base Score: 3.5/10
Impact Subscore: 2.9/10
Exploitability Subscore: 6.8/10
Exploit range: Remote
Attack complexity: Medium
Authentication: Single time
Confidentiality impact: None
Integrity impact: Partial
Availability impact: None

Papoo Content Management System Multiple Cross Site Scriptings Jun 12 2007 ------------------------------------------------------------------------ ------- * Product Papoo Content Management System * Vulnerable Versions Papoo Light 3.6 * Vendor Status The Vendor was notified and the issue fixed. A patch is available at: http://www.papoo.de/index/menuid/204/reporeid/215 * Details The Papoo Content Management System is prone to multiple Cross Site Scripting vulnerabilities. The application fails to sanitize user input from certain characters in three cases: 1) The argument list of GET requests is shown in the page source and may contain script code. 2) Visitor comments will appear in a message list in the internal administra- tion interface. The Title can contain script code that will be executed in the administrator's browser. 3) Internally sent messages between CMS users are shown unfiltered in the message overview. (This requires a minimal set of privileges) * Impact An attacker might be able to gain administrator privileges. * Exploit No exploit required. ------------------------------------------------------------------------ ------- Copyright (C) Nico Leidecker 2007 - http://www.leidecker.info Permission is hereby granted for the electronic redistribution of this informa- tion. It is not to be edited or altered in any way without the express written consent of the author. The information herein contained may change without notice. Use of this infor- mation constitutes acceptance for use in an AS IS condition. There are NO war- ranties, implied or otherwise, with regard to this information of its use. Any use of this information is at the user's risk. In no event shall the au- thor/distributor be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information. _____________________________________________________________________ Der WEB.DE SmartSurfer hilft bis zu 70% Ihrer Onlinekosten zu sparen! http://smartsurfer.web.de/?mc=100071&distributionid=000000000066


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top