cPanel dir参数跨站脚本漏洞

cPanel dir参数跨站脚本漏洞

漏洞ID 1107788 漏洞类型 跨站脚本
发布时间 2004-03-12 更新时间 2005-10-20
图片[1]-cPanel dir参数跨站脚本漏洞-安全小百科CVE编号 CVE-2004-2308
图片[2]-cPanel dir参数跨站脚本漏洞-安全小百科CNNVD-ID CNNVD-200412-236
漏洞平台 CGI CVSS评分 4.3
|漏洞来源
https://www.exploit-db.com/exploits/23806
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200412-236
|漏洞详情
cPanel9.1.0版本及之前可能的版本存在跨站脚本(XSS)漏洞。远程攻击者可以借助dohtaccess.htm中的dir参数注入任意web脚本或HTML。
|漏洞EXP
source: http://www.securityfocus.com/bid/9853/info

It has been reported that cPanel may be prone to a cross-site scripting vulnerability that may allow a remote attacker to execute HTML or script code in a user's browser. The issue presents itself due to insufficient sanitization of user-supplied data via the 'dir' parameter of 'dohtaccess.html' page. The victim may require to be authenticated with valid credentials to be exposed to exploitation.

Due to the possibility of attacker-specified HTML and script code being rendered in a victim's browser, it is possible to steal cookie-based authentication credentials from that user. Other attacks are possible as well.

http://www.example.com:2082/frontend/x/htaccess/dohtaccess.html?dir=><script>alert(0x29A Crew)</script>
|参考资料

来源:XF
名称:cpanel-dir-xss(15485)
链接:http://xforce.iss.net/xforce/xfdb/15485
来源:BID
名称:9853
链接:http://www.securityfocus.com/bid/9853
来源:BUGTRAQ
名称:20040312CpanelRequestLetsAuthenticatedUsersConductCross-SiteScriptingAttacks
链接:http://www.securityfocus.com/archive/1/357231

相关推荐: Unisys Clearpath MCP Portscan Denial Of Service Vulnerability

Unisys Clearpath MCP Portscan Denial Of Service Vulnerability 漏洞ID 1101531 漏洞类型 Failure to Handle Exceptional Conditions 发布时间 2002…

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享