Cross site scripting in Onecenter forum 4.0

From: David F. Madrid (conde0_at_telefonica.net)
Date: 04/25/03

  • Next message: SGI Security Coordinator: "Vulnerability in nsd LDAP Implementation on IRIX"
    Date: Thu, 24 Apr 2003 23:01:17 -0300 (ART)
    To: <bugtraq@securityfocus.com>
    
    

    Issue : cross site scripting in Onecenter forum

    Affected Product : Onecenter forum 4.0

    Description :

    Onecenter offers a free discussion forum hosted in the company's servers (
    forum.onecenter.com ) . Any user in the forum is identified by a cookie
    that contains nick , name , mail address and password . This information
    can be easily obtained as you can add in your posts the img html tag with
    a custom script as follows
    <img src=javascript:alert(document.cookie);>

    To impersonate any user in the forum ( onecenter administrators would be a
    good choice ) you just have to build a cookie like the one obtained and
    visit the forum .

    -- 
    Regards ,
    David F. Madrid
    Madrid , Spain
    

  • Next message: SGI Security Coordinator: "Vulnerability in nsd LDAP Implementation on IRIX"

    Relevant Pages