Short Name |
HTTP:XSS:IPLANET-ROOT |
---|---|
Severity |
High |
Recommended |
No |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
IPlanet Admin Server Tool XSS Execution |
Release Date |
2003/04/22 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability in iPlanet Web server. iPlanet 4.x SP11 and earlier versions are vulnerable. The iPlanet log viewer contains a cross site scripting vulnerability. Attackers can embed maliciously crafted JavaScript code inside a URL request; when the iPlanet administrator opens the Admin Server Tool to browse Web logs, attackers can use the embedded code to execute arbitrary commands.
A cross-site scripting vulnerability has been discovered in iPlanet web servers. The vulnerability exists when an administrator views logs in the iPlanet Admin Server. An attacker may exploit this vulnerability by enticing a victim user to follow a malicious link. Attacker-supplied HTML and script code may be executed on a web client in the context of the Admin Server site. This may allow for theft of cookie-based authentication credentials and other attacks.