header-logo
Suggest Exploit
vendor:
IBM OmniFind
by:
Unknown
5.5
CVSS
MEDIUM
Cross-Site Scripting (XSS)
79
CWE
Product Name: IBM OmniFind
Affected Version From: 8.5
Affected Version To: 9
Patch Exists: YES
Related CWE: CVE-2011-1370
CPE: a:ibm:omnifind:8.5 cpe:/a:ibm:omnifind:9.0
Metasploit:
Other Scripts:
Platforms Tested:
2011

Cross-Site Scripting Vulnerability in IBM OmniFind

The vulnerability exists due to insufficient sanitization of user-supplied data. An attacker can exploit this vulnerability by injecting arbitrary script code into the affected site, which can then be executed in the browser of an unsuspecting user. This can lead to the theft of authentication credentials stored in cookies and enable the attacker to launch further attacks.

Mitigation:

To mitigate this vulnerability, it is recommended to apply the necessary patches provided by IBM. Additionally, input validation and output encoding should be implemented to sanitize user-supplied data.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/44940/info

IBM OmniFind is prone to a cross-site scripting vulnerability because it fails to sufficiently sanitize user-supplied data.

An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.

IBM OmniFind versions 8.5 and 9.0 are affected; other versions may also be vulnerable.

NOTE: This issue was previously covered in BID 44740 (IBM OmniFind Multiple Vulnerabilities) but has been given its own record to better document it. 

http://www.example.com/ESAdmin/collection.do?command=<script>alert(document.cookie);</script>