CERT-In Vulnerability Note
CIVN-2007-0133
Cross-site scripting vulnerability in Microsoft Windows Share Point Service 3.0 and Share point server 2007
Original Issue Date:October 10, 2007
Severity Rating: MEDIUM
Systems Affected
- Microsoft Windows Server 2003
- Microsoft Windows Server 2003 Service Pack 1
- Microsoft Windows SharePoint Services 3.0
- Microsoft Windows Server 2003 Service Pack 2
- Microsoft Windows SharePoint Services 3.0
- Microsoft Windows Server 2003 x64 Edition
- Microsoft Windows SharePoint Services 3.0
- Microsoft Windows Server 2003 x64 Edition Service Pack 2
- Microsoft Windows SharePoint Services 3.0
- Microsoft Office SharePoint Server 2007
- Microsoft Office SharePoint Server 2007
- Microsoft Office SharePoint Server 2007 x64 Edition
Overview
Avulnerability has been reported in Microsoft SharePoint Services and Office SharePoint Server that could be exploited by the remote attacker to execute arbitrary scripting code on the affected system and result in information disclosure.
Description
This cross-site scripting vulnerability is caused due to improper input validation while processing URL-encoded requests. The attacker could exploit this vulnerability by specially-crafted URL with arbitrary web script or HTML via the PATH_INFO query string .
An attacker could host a website containing the specially crafted file and persuade user to visit the web site by getting them click on the link to the web site or could send the file to the user in email attachment. Opening this crafted file allows execution of arbitrary code enabling attacker to obtain sensitive information.
Solution
Apply appropriate patches as mentioned in Microsoft Security Bulletin
MS07-059
Vendor Information
Microsoft
http://www.microsoft.com/technet/security/bulletin/MS07-059.mspx
References
FrSIRT
http://www.frsirt.com/english/advisories/2007/3439
SecurityFocus
http://www.securityfocus.com/bid/23832/discuss
Secunia
http://secunia.com/advisories/27148/
CVE Name
CVE-2007-2581
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information
Email: info@cert-in.org.in Phone: +91-11-2436857
Postal address
Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology Government of India Electronics Niketan 6, CGO Complex, Lodhi Road, New Delhi - 110 003 India
|