Re: Critical Vulnerability on your website!

Steve McIntyre <[email protected]>
Newsgroups gmane.linux.debian.devel.www
Message-ID <[email protected]>
On Thu, Oct 22, 2015 at 02:22:12PM +0000, Othmane Tamagart wrote:
>HI Debian ,
>
>I'm 0thm4n@WhiteHatSec , i am a Based-Student security researcher, Certified Pentester & i did a research i've found a Very-High Risk Vulnerability Called XSS ( Cross-site Scripting )
>
>Vulnerable File : http://cdimage-search.debian.org/?search_area=release&type=simple&query=
>
>Vulnerable URL + p0c  : http://cdimage-search.debian.org/?search_area=release&type=simple&query=%22%3E%3Cimg+src%3Dx+onerror%3Dprompt%28%220thm4n%40WhiteHatSecurity%22%29%3B%3E&Search=Search&.cgifields=search_area&.cgifields=type
>
>POST DATA : "><img src=x onerror=prompt("0thm4nWhiteHatSecurity");>
>
>Proof-Of-Concept : http://i.imgur.com/uKtglGC.png
>
>About Vulnerability ( BUG ) : https://en.wikipedia.org/wiki/Cross-site_scripting
>
>Risk : Security Risk Critical

Hi Othmane,

Thanks very much for your report!

I've just pushed a fix to sanitise input here - please let us know if
you find anything further.

-- 
Steve McIntyre, Cambridge, UK.                                [email protected]
Google-bait:       http://www.debian.org/CD/free-linux-cd
  Debian does NOT ship free CDs. Please do NOT contact the mailing
  lists asking us to send them to you.
signature.asc (application/pgp-signature, 819 B)
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iQIcBAEBCAAGBQJWKQpXAAoJEFh5eVc0QmhOccUP/0ZOz29VEgt+8IZhHHQz85Np
32k5iuK6LhPw1uZKBx/bHmbPrN0fk+nFN9oTOVQVmpRJceammYxCsjl3fkinsWq1
StaRmnRJXR7ViDcPCcByx0e/2SmvpFyYWbnHaQwHOmdAepGPQpfnl6vBSjV4YnEp
xvIA6cYPN4RkDez6SxjWwCB4bB1gNYGD6lgr0c98xGBHFRvKtD92bnxla7tu50bM
rcK6Ih0InBxmcAjy3ZLGArJyHRqHIdUAOE57MswZsArSXcGXs59deYief17jNa2m
imxNFGmCTQ62QyCzmQc4BKL0tRGrA2O5g0fPN6K5f/rLM9E5cEYgVi7qI+rSnY0a
4nNNpR0g4CBj/Z9GEFYfV4IYWrrY2kPaiwKRIFCaFKp4oBnDUqQ0eoGk80D2znHc
UONJQuvoBO+ZyUAufsebvEa4Lzes2iA45MKW+KWErt35FznF7r82Ff6p8GANWWNZ
pasZV7XtAssVt/YzakxqOEQrjgxPFUTzTLrlgdQwNhLnGR/mEIuThaIhKBmMlksC
koIZlv1oV770unsZbHHrgj91gwKIlOkfTIXD6WDndcs4m0Jza30fz4ZbydzO26eD
rdOeXxzKyiAKu7juBYkBRwIEqHVAHCnRQZwZwrd4nyNOH17aMGkWkLqhoJncT3dx
gPIa7BiXpOM/5YJLTPdV
=q1Wj
-----END PGP SIGNATURE-----
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.