Sense of Security is one of Australia’s most trusted providers of cyber resilience, information security and risk management services.

Latest announcements
© Copyright Sense of Security

Security Advisory – SOS-09-001- Libero Cross-Site Scripting Vulnerability

Release Date: 23-Feb-2009

Last Update:

Vendor Notification Date: 20-Oct-2008

Product: Libero

Platform: Windows (verified), possibly others

Affected versions: Libero v5.3 SP5 (verified), possibly others

Severity Rating: Medium

Impact: Cookie/credential theft, impersonation, loss of
confidentiality

Attack Vector: Remote

Solution Status: Vendor patch not yet available

CVE reference: CVE – 2009-0540

Details

Libero is a library management system. During an application penetration test Sense of Security identified a cross-site scripting vulnerability in the search feature of the Libero web application. This occurred as a result of the application not properly filtering HTML tags which allowed malicious Javascript to be embedded. When input is incorrectly validated and not properly sanitised and then displayed in a web page, attackers can trick users into viewing the web page and causing malicious code to be executed.

Please refer to the PDF version of this advisory  for proof of concept code examples.

Solution

The vendor has advised that the fix will be made available in Libero v5.5 SP1.

A fix will not be made available for previous versions.

Discovered By

Oliver Greiter from Sense of Security Labs.

Our expert consultants are here to help you. For all your Cyber Security needs please contact us today.

No Comments

Sorry, the comment form is closed at this time.