CommuniMail mailadmin.cgi and templates.cgi cross-site scripting
| communimail-multiple-xss (25931) |
Description:
CommuniMail is vulnerable to cross-site scripting, caused by improper validation of user-supplied input by the mailadmin.cgi and templates.cgi scripts. A remote attacker could exploit this vulnerability using the 'list_id' or 'form_id' parameter to execute script in a victim's Web browser within the security context of the hosting Web site, allowing the attacker to steal the victim's cookie-based authentication credentials.
Consequences:
Gain Access
Remedy:
No remedy available as of February 6, 2010.
References:
- SibSoft Web site: Sibsoft Communimail - Mail List Manager & Newsletter Script.
- UNSECURED SYSTEMS 19 april 2006: CommuniMail XSS vuln. .
- BID-17602: CommuniMail Multiple Cross-Site Scripting Vulnerabilities
- CVE-2006-1944: Multiple cross-site scripting (XSS) vulnerabilities in SibSoft CommuniMail 1.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the list_id parameter in mailadmin.cgi and (2) the form_id parameter in templates.cgi.
- OSVDB ID: 24735: CommuniMail mailadmin.cgi list_id Variable XSS
- OSVDB ID: 24736: CommuniMail templates.cgi form_id Variable XSS
- SA19667: CommuniMail Multiple Cross-Site Scripting Vulnerabilities
- VUPEN/ADV-2006-1407: CommuniMail list_id and form_id Parameters Cross Site Scripting Vulnerabilities
Platforms Affected:
- SibSoft CommuniMail 1.2 and prior
Reported:
Apr 19, 2006
The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.
For corrections or additions please email xforce@iss.net
