CVE-2021-31682
published 2021-10-22CVE-2021-31682: The login portal for the Automated Logic WebCTRL/WebCTRL OEM web application contains a vulnerability that allows for reflected XSS attacks due to the…
PriorityP343medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
EXPLOIT
EPSS
10.51%
95.2th percentile
The login portal for the Automated Logic WebCTRL/WebCTRL OEM web application contains a vulnerability that allows for reflected XSS attacks due to the operatorlocale GET parameter not being sanitized. This issue impacts versions 6.5 and below. This issue works by passing in a basic XSS payload to a vulnerable GET parameter that is reflected in the output without sanitization.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| automatedlogic | webctrl | <= 6.5 | — |
CVSS provenance
nvdv3.16.1MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
WebCTRL OEM 6.5 - 'locale' Reflected Cross-Site Scripting (XSS)
exploitdb·2021-10-29·CVSS 6.1
CVE-2021-31682 [MEDIUM] WebCTRL OEM 6.5 - 'locale' Reflected Cross-Site Scripting (XSS)
WebCTRL OEM 6.5 - 'locale' Reflected Cross-Site Scripting (XSS)
---
# Exploit Title: WebCTRL OEM 6.5 - 'locale' Reflected Cross-Site Scripting (XSS)
# Date: 4/07/2021
# Exploit Author: 3ndG4me
# Vendor Homepage: https://www.automatedlogic.com/en/products/webctrl-building-automation-system/
# Version: 6.5 and Below
# CVE : CVE-2021-31682
--Summary--
The login portal for the Automated Logic WebCTRL/WebCTRL OEM web application contains a vulnerability that allows for reflected XSS attacks due to the operatorlocale GET parameter not being sanitized.
Automated Logic
https://www.automatedlogic.com/en/products-services/webctrl-building-automation-system/
--Affects--
- WebCTRL OEM
- Versions 6.5 and prior
--Details--
The login portal for the Automated Logic WebCTRL/WebCTRL OEM web applica
Nuclei
WebCTRL OEM <= 6.5 - Cross-Site Scripting
nuclei·CVSS 6.1
CVE-2021-31682 [MEDIUM] WebCTRL OEM <= 6.5 - Cross-Site Scripting
WebCTRL OEM alert(document.domain)'
- 'common/lvl5'
condition: and
- type: word
part: header
words:
- "text/html"
- type: status
status:
- 200
# digest: 490a0046304402204649f02e99b0d1972bfac5648146c344b65a36de1d5c7dc2f15813ace616f42202206efee3f17ad5ac15e550f55acdecba180dfcf6aa098585560f5878e5da58fd26:922c64590222798bb761d5b6d8e72950
http://packetstormsecurity.com/files/164707/WebCTRL-OEM-6.5-Cross-Site-Scripting.htmlhttps://github.com/3ndG4me/WebCTRL-OperatorLocale-Parameter-Reflected-XSShttps://www.automatedlogic.com/en/products-services/webctrl-building-automation-system/http://packetstormsecurity.com/files/164707/WebCTRL-OEM-6.5-Cross-Site-Scripting.htmlhttps://github.com/3ndG4me/WebCTRL-OperatorLocale-Parameter-Reflected-XSShttps://www.automatedlogic.com/en/products-services/webctrl-building-automation-system/
2021-10-22
Published