Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

HTTP:XSS:IPLANET-ROOT

Severity

High

Recommended

No

Recommended Action

Drop

Category

HTTP

Keywords

IPlanet Admin Server Tool XSS Execution

Release Date

2003/04/22

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

HTTP: IPlanet Admin Server Tool XSS Execution


This signature detects attempts to exploit a known vulnerability in iPlanet Web server. iPlanet 4.x SP11 and earlier versions are vulnerable. The iPlanet log viewer contains a cross site scripting vulnerability. Attackers can embed maliciously crafted JavaScript code inside a URL request; when the iPlanet administrator opens the Admin Server Tool to browse Web logs, attackers can use the embedded code to execute arbitrary commands.

Extended Description

A cross-site scripting vulnerability has been discovered in iPlanet web servers. The vulnerability exists when an administrator views logs in the iPlanet Admin Server. An attacker may exploit this vulnerability by enticing a victim user to follow a malicious link. Attacker-supplied HTML and script code may be executed on a web client in the context of the Admin Server site. This may allow for theft of cookie-based authentication credentials and other attacks.

Affected Products

  • Sun iPlanet Web Server 4.1.0
  • Sun iPlanet Web Server 4.1.0 SP1
  • Sun iPlanet Web Server 4.1.0 SP10
  • Sun iPlanet Web Server 4.1.0 SP2
  • Sun iPlanet Web Server 4.1.0 SP3
  • Sun iPlanet Web Server 4.1.0 SP4
  • Sun iPlanet Web Server 4.1.0 SP5
  • Sun iPlanet Web Server 4.1.0 SP6
  • Sun iPlanet Web Server 4.1.0 SP7
  • Sun iPlanet Web Server 4.1.0 SP8
  • Sun iPlanet Web Server 4.1.0 SP9
  • Sun iPlanet Web Server Enterprise Edition 4.0.0
  • Sun iPlanet Web Server Enterprise Edition 4.0.0 SP1
  • Sun iPlanet Web Server Enterprise Edition 4.0.0 SP2
  • Sun iPlanet Web Server Enterprise Edition 4.0.0 SP3
  • Sun iPlanet Web Server Enterprise Edition 4.0.0 SP4
  • Sun iPlanet Web Server Enterprise Edition 4.0.0 SP5
  • Sun iPlanet Web Server Enterprise Edition 4.0.0 SP6

References

  • BugTraq: 6202
  • CVE: CVE-2002-1315
  • URL: http://www.juniper.net/security/auto/vulnerabilities/vuln1491.html
  • URL: http://www.securityfocus.com/archive/1/300451
  • URL: http://sunsolve.sun.com/search/document.do?assetkey=1-26-49475-1

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out