vendor:
Openfire
by:
j5s
8.8
CVSS
HIGH
Stored XSS
79
CWE
Product Name: Openfire
Affected Version From: 4.6.0
Affected Version To: 4.6.0
Patch Exists: YES
Related CWE: N/A
CPE: a:igniterealtime:openfire
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows, Linux, Mac
2020
Openfire 4.6.0 – ‘groupchatJID’ Stored XSS
A stored cross-site scripting (XSS) vulnerability exists in Openfire 4.6.0. An attacker can send a malicious payload to the vulnerable parameter 'groupchatJID' in the 'create-bookmark.jsp' page, which will be stored in the database and executed when the page is loaded. The payload used in this exploit is '><ScRiPt>alert(document.cookie)</ScRiPt>', which will display the user's cookie information in an alert box.
Mitigation:
The vendor has released a patch to address this vulnerability. Users should upgrade to the latest version of Openfire.