Actions
Bug #17018
openPotential XSS via Snort SID Management Configuration List filenames
Start date:
Due date:
% Done:
100%
Estimated time:
Plus Target Version:
Affected Version:
Affected Plus Version:
Affected Architecture:
Description
The Snort SID Management Configuration List page at snort_sid_mgmt.php does not encode filenames before display.
Uploading a SID Management Configuration List file with a name such as the following can trigger an XSS on the page:
xsstest123<img src=x onerror=alert(String.fromCharCode(88,83,83))>.txt
Reported by: @lujiefsi
Updated by Jim Pingle 2 days ago
- Status changed from Confirmed to Feedback
- % Done changed from 0 to 100
- Private changed from Yes to No
Fixed in Snort pkg v4.1.10
Actions
Also available in: Atom