Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

  [Full-disclosure] [NETRAGARD SECURITY ADVISORY] [< Safari 3.2.3 Arbitrary Code Execution + PoC ][NETRAGARD-
20090622]

  [Full-disclosure] [DSF-02-2009] - Zoki Catalog SQL Injection

  (GET var 'name') BLIND SQL INJECTION EXPLOIT --FretsWeb 1.2-->

  MULTIPLE LOCAL FILE INCLUSION VULNERABILITIES --FretsWeb 1.2-->

From:r0t <krustevs_(at)_googlemail.com>
Date:21.06.2009
Subject:DirectAdmin <= v1.33.6 XSS vuln.

###############################################
Vuln. discovered by : r0t
Date: 19 June 2009
vendor:http://www.directadmin.com/
affected versions:v1.33.6 and other
versions also can be affected.
orginal advisory:
http://pridels-team.blogspot.com/2009/06/directadmin-v1336-xss-vuln.html

###############################################

DirectAdmin contains a flaw that allows a remote Cross-Site Scripting
attacks.Input passed to the "view" parameter in "CMD_REDIRECT" isn't
properly sanitised before being returned to the user.
This can be exploited to execute arbitrary HTML and script code in a
user's browser session in context of an affected site.
##############################################
live PoC:
http://www.directadmin.com:2222/CMD_REDIRECT?view=
advanced&sort1%22%3E%3Cscript%3Ealert(111);%3C/sc
ript%3E=1&domain=demo.com
PS.
need to login:
demo_user:demo
###############################################
Solution:
Filter malicious characters and character sequences in a web proxy.
###############################################

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server