vendor:
Apache2Triad
by:
John Page AKA hyp3rlinx
6,1
CVSS
MEDIUM
Session Fixation, Cross Site Request Forgery, Persistent Cross Site Scripting
352, 352, 79
CWE
Product Name: Apache2Triad
Affected Version From: Apache2Triad v1.5.4
Affected Version To: Apache2Triad v1.5.4
Patch Exists: NO
Related CWE: CVE-2017-12965, CVE-2017-12970, CVE-2017-12971
CPE: a:apache2triad:apache2triad:1.5.4
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2017
Apache2Triad v1.5.4 Multiple CVEs
Apache2Triad allows remote attackers to set an arbitrary PHPSESSID cookie, if a Apache2Triad user authenticates using the attacker controlled PHPSESSID the attacker can then access the Apache2Triad Web application with same level of access as that of the victim to potentially take over the Apache2Triad system. Apache2Triad is vulnerable to Cross Site Request Forgery (CSRF) attacks, this allows an attacker to perform actions on behalf of the victim if the victim is logged into the Apache2Triad Web application. Apache2Triad is vulnerable to Persistent Cross Site Scripting (XSS) attacks, this allows an attacker to inject malicious JavaScript code into the Apache2Triad Web application.
Mitigation:
Upgrade to the latest version of Apache2Triad.