Icy Phoenix 1.3.0.53a HTTP Referer storage Cross-Site Scripting Vulnerability

Source: Internet
Author: User

Icy Phoenix is a highly customizable phpbb-based content management system. Icy Phoenix has a storage-type cross-site scripting vulnerability that may cause cross-site scripting attacks.

[+] Info:
~~~~~~~~~
# Exploit Title: Icy Phoenix 1.3.0.53a http referer stored XSS
# Google Dork: "Powered by Icy Phoenix # Date: 16-2-2011
# Author: Saif El-Sherei
# Software Link: http://www.icyphoenix.com/dload.php? Action = file & file_id = 171
# Version: Icy Phoenix 1.3.0.53a
# Tested on: FF 3.0.15, IE 8
# Vendor Response:
Http://www.icyphoenix.com/viewtopic.php? F = 1 & p = 51700 # p51700

[+] Poc:
~~~~~~~~~
There is a stoed XSS Vulnerability using http referer HTTP header due
Failure in "index. php" in the acp to sanitize the http referer header any
Visitor to the site can comprmise the admin account or any user
Privileges to see the "http referrers" section under the "Info" section.
Attacker has to use an intrcepting proxy or manual server requests to add
The "HTTP referer header" containing the POC to the server request.

POC:
<Script> alert ("XSS"); </script>

[+] Reference:
~~~~~~~~~
Http://www.exploit-db.com/exploits/16199

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.