|
[ Message Precedent sur la mailing][ Message Suivant sur la mailing][ Precedent dans le fil][ Prochain dans le fil][ Index par Date][ Index par fil]
[Full-disclosure] PHPShop 0.8.1 <= | Cross Site Scripting Vulnerability
========================================
PHPShop 0.8.1 <= | Cross Site Scripting Vulnerability
========================================
1. OVERVIEW
The PHPShop 0.8.1 and lower versions are currently vulnerable to Cross
Site Scripting.
2. BACKGROUND
PHPShop is a PHP-powered shopping cart application. It is released
under the GNU General Public License.
The primary purpose of PHPShop is to provide a simple shopping cart
solution that is easy to customize to suit any purpose. PHPShop has
less features that many other shopping cart applications, but is
generally easier to customize.
3. VULNERABILITY DESCRIPTION
The Query String was not properly sanitized upon submission to the
/index.php url, which allows attacker to conduct Cross Site Scripting
attack.
This may allow an attacker to create a specially crafted URL that
would execute arbitrary script code in a victim's browser.
4. VERSIONS AFFECTED
PHP 0.8.1 <=
5. PROOF-OF-CONCEPT/EXPLOIT
link://[click]
6. SOLUTION
The vendor has discontinued this product.
It is recommended that an alternate software package be used in its place.
7. VENDOR
PHPShop Development Team
link://[click]
8. CREDIT
This vulnerability was discovered by Aung Khant, link://[click], YGN
Ethical Hacker Group, Myanmar.
9. DISCLOSURE TIME-LINE
2011-02-25: vulnerability disclosed
10. REFERENCES
Original Advisory URL:
link://[click]
Project Home: link://[click],
link://[click]
PHPShop Download Stats:
link://[click]
XSS (owasp): link://[click](XSS)
CWE-79: link://[click]
#yehg [2011-02-25]
---------------------------------
Best regards,
YGN Ethical Hacker Group
Yangon, Myanmar
link://[click]
Our Lab | link://[click]
Our Directory | link://[click]
Full-Disclosure - We believe in it.
Charter: link://[click]
Hosted and sponsored by Secunia - link://[click]
Archives de la liste de diffusion Secunia
Archives de la liste de diffusion Full Disclosure
Mini-Tagwall des articles publiés sur SecuObs : | | | | sécurité, exploit, windows, attaque, outil, microsoft, réseau, audit, metasploit, vulnérabilité, système, virus, internet, usbsploit, données, source, linux, protocol, présentation, scanne, réseaux, scanner, bluetooth, conférence, reverse, shell, meterpreter, vista, rootkit, détection, mobile, security, malicieux, engineering, téléphone, paquet, trames, https, noyau, utilisant, intel, wishmaster, google, sysun, libre |
Mini-Tagwall de l'annuaire video : | | | | curit, security, biomet, metasploit, biometric, cking, password, windows, botnet, defcon, tutorial, crypt, xploit, exploit, lockpicking, linux, attack, wireshark, vmware, rootkit, conference, network, shmoocon, backtrack, virus, conficker, elcom, etter, elcomsoft, server, meterpreter, openvpn, ettercap, openbs, iphone, shell, openbsd, iptables, securitytube, deepsec, source, office, systm, openssh, radio |
Mini-Tagwall des articles de la revue de presse : | | | | security, microsoft, windows, hacker, attack, network, vulnerability, google, exploit, malware, internet, remote, iphone, server, inject, patch, apple, twitter, mobile, virus, ebook, facebook, vulnérabilité, crypt, source, linux, password, intel, research, virtual, phish, access, tutorial, trojan, social, privacy, firefox, adobe, overflow, office, cisco, conficker, botnet, pirate, sécurité |
Mini-Tagwall des Tweets de la revue Twitter : | | | | security, linux, botnet, attack, metasploit, cisco, defcon, phish, exploit, google, inject, server, firewall, network, twitter, vmware, windows, microsoft, compliance, vulnerability, python, engineering, source, kernel, crypt, social, overflow, nessus, crack, hacker, virus, iphone, patch, virtual, javascript, malware, conficker, pentest, research, email, password, adobe, apache, proxy, backtrack |
|
|
|
|
|