header-logo
Suggest Exploit
vendor:
SendStudio (Email Marketer)
by:
5.5
CVSS
MEDIUM
Cross-Site Scripting, Security Bypass
79 (XSS), 287 (Security Bypass)
CWE
Product Name: SendStudio (Email Marketer)
Affected Version From:
Affected Version To:
Patch Exists:
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested:

Cross-Site Scripting and Security Bypass in SendStudio (Email Marketer)

An attacker can execute arbitrary script code in the browser of an unsuspecting user, steal cookie-based authentication credentials, and gain unauthorized administrative access to the affected application.

Mitigation:

Implement input validation and output encoding to prevent XSS attacks. Implement proper authentication and authorization mechanisms to prevent security bypass.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/37554/info

SendStudio (also called Email Marketer) is prone to a cross-site scripting issue and a security-bypass issue.

An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site steal cookie-based authentication credentials and gain unauthorized administrative access to the affected application.

The vendor reports that Interspire Email Marketer 6 is not affected. 

1- XSS (High)
  
http://www.example.com/wl-ssf41/admin/index.php/index?SID=>"><ScRiPt%20%0a%0d>alert(213771818860)%3B</ScRiPt>

2- Bay Pass (Medium)
  
http://www.example.com/wl-ssf41/admin/index.php/index?SID=xx