Xoops Viewtopic.php跨站脚本攻击漏洞

QQ空间 新浪微博 微信 QQ facebook twitter
漏洞ID 1107652 漏洞类型 跨站脚本
发布时间 2004-01-26 更新时间 2004-12-31
CVE编号 CVE-2004-2756 CNNVD-ID CNNVD-200412-1173
漏洞平台 PHP CVSS评分 4.3
|漏洞来源
https://www.exploit-db.com/exploits/23606
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200412-1173
|漏洞详情
Xoops2.x,可能2到2.0.5版本的viewtopic.php存在跨站脚本攻击漏洞。远程攻击者借助(1)forum和(2)topic_id参数注入任意web脚本或HTML。
|漏洞EXP
source: http://www.securityfocus.com/bid/9497/info

It has been reported that Xoops may be prone to a cross-site scripting vulnerability that may allow a remote user to execute HTML or script code in a user's browser. HTML and script code may be parsed via the 'topic_id' and 'forum' URI parameters of 'newbb/viewtopic.php' script.

Successful exploitation of this attack may allow an attacker to steal cookie-based authentication credentials. Other attacks are also possible.

Xoops versions 2.x have been reported to be prone to this issue. 

http://www.example.org/modules/newbb/viewtopic.php?topic_id=14577&forum=2"><script>alert(document.cookie);</script>
http://www.example.org/modules/newbb/viewtopic.php?topic_id=14577"><script>alert(document.cookie);</script>&forum=2
|参考资料

来源:BID
名称:9497
链接:http://www.securityfocus.com/bid/9497
来源:SECTRACK
名称:1008849
链接:http://securitytracker.com/id?1008849