Phorum Multiple Module跨站脚本漏洞

Phorum Multiple Module跨站脚本漏洞

漏洞ID 1107789 漏洞类型 跨站脚本
发布时间 2004-03-15 更新时间 2005-10-20
图片[1]-Phorum Multiple Module跨站脚本漏洞-安全小百科CVE编号 CVE-2004-1822
图片[2]-Phorum Multiple Module跨站脚本漏洞-安全小百科CNNVD-ID CNNVD-200403-055
漏洞平台 PHP CVSS评分 4.3
|漏洞来源
https://www.exploit-db.com/exploits/23820
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200403-055
|漏洞详情
Phorum3.1到5.0.3测试版存在多个跨站脚本漏洞。远程攻击者借助(1)login.php的HTTP_REFERER参数,(2)register.php的HTTP_REFERER参数,或(3)profile.php的target参数注入任意web脚本或HTML。
|漏洞EXP
source: http://www.securityfocus.com/bid/9882/info
  
It has been reported that Phorum is prone to a cross-site scripting vulnerability across multiple modules. The issue presents itself across multiple modules including 'login.php', 'register.php', and 'profile.php'. These modules employ two hidden variables named 'f' and 'target', which are passed user-supplied input values from HTTP_REFERER without proper sanitization.
  
Phorum versions 5.0.3 Beta and prior are reported to be vulnerable to this issue.

profile.php?id=2&action=edit&target=[XSS]
|参考资料

来源:BID
名称:9882
链接:http://www.securityfocus.com/bid/9882
来源:SECUNIA
名称:11157
链接:http://secunia.com/advisories/11157
来源:XF
名称:phorum-register-xss(15494)
链接:http://xforce.iss.net/xforce/xfdb/15494
来源:phorum.org
链接:http://phorum.org/changelog.txt
来源:BUGTRAQ
名称:20040315Phorum5.0.3Beta&&EarlierXSSIssues;
链接:http://marc.theaimsgroup.com/?l=bugtraq&m;=107939479713136&w;=2
来源:OSVDB
名称:4335
链接:http://www.osvdb.org/4335
来源:OSVDB
名称:4334
链接:http://www.osvdb.org/4334
来源:OSVDB
名称:4333
链接:http://www.osvdb.org/4333
来源:SECTRACK
名称:1009433
链接:http://securitytracker.com/id?1009433

相关推荐: BisonFTP Information Disclosure Vulnerability

BisonFTP Information Disclosure Vulnerability 漏洞ID 1100887 漏洞类型 Input Validation Error 发布时间 2003-02-17 更新时间 2003-02-17 CVE编号 N/A C…

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享