vendor:
PHPfileNavigator
by:
John Page aka hyp3rlinx
4.3
CVSS
MEDIUM
Persistent & Reflected XSS
79
CWE
Product Name: PHPfileNavigator
Affected Version From: 2.3.2003
Affected Version To: 2.3.2003
Patch Exists: NO
Related CWE: N/A
CPE: a:pfn:phpfilenavigator:2.3.3
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Xampp-1.7.0
2008
PHPfileNavigator v2.3.3 (pfn) Persistent & Reflected XSS
Multiple persistent XSS vulnerable fields exist on the 'Modify User' form. nome, usuario, email etc... We can leverage existing CSRF vulnerability to update a victimz profile and store malicious XSS payload or an malicious user can inject there own payloads when updating thier profilez affecting other users and the security of the whole application. Multiple reflected XSS exists as well for following PHP pages all with same vulnerable parameter 'dir' when issuing GET requests.
Mitigation:
Ensure that user input is properly sanitized and validated before being used in the application.