Opened 6 years ago

Closed 2 years ago

Last modified 14 months ago

#10440 closed defect (fixed)

Cross Site Scripting at TorProject Blog

Reported by: patryk.bogdan@… Owned by:
Priority: High Milestone:
Component: Webpages/Blog Version:
Severity: Normal Keywords:
Cc: Actual Points:
Parent ID: Points:
Reviewer: Sponsor:

Description

GET parameter incorrectly filter GET query which allows attackers to execute JavaScript code which is called Cross Site Scripting.

https://blog.torproject.org/archive/1%3Cbody%20onload=alert%28666%29%3E/2013/11/,

Child Tickets

Attachments (3)

stem-1.3.0.tar.bz2 (1.4 MB) - added by mastertlion 5 years ago.
Novo(a) Documento de texto.txt (46.3 KB) - added by mastertlion 5 years ago.
mastertlion_site1_2015-01-01-(16h20).zip (202.1 KB) - added by mastertlion 5 years ago.

Download all attachments as: .zip

Change History (13)

comment:1 Changed 6 years ago by bastik

NoScript saved me, however unprotected browsers read the number of the beast (666). (Could be much worser)

Since some change in Trac settings I can't add someone else to CC or change the owner. Phobos would be "responsible" as far as I can tell.

comment:2 Changed 6 years ago by cypherpunks

the blog seems to run a very, very old version of drupal. maybe step one is to upgrade the blog. or scrap it for a modern blog platform.

comment:3 Changed 5 years ago by cypherpunks

Owner: changed from Patryk Bogdan to phobos
Status: newassigned

comment:4 Changed 5 years ago by phobos

Status: assignednew

comment:5 Changed 5 years ago by phobos

Owner: phobos deleted
Status: newassigned

comment:6 Changed 5 years ago by phobos

Status: assignednew

Changed 5 years ago by mastertlion

Attachment: stem-1.3.0.tar.bz2 added

Changed 5 years ago by mastertlion

Changed 5 years ago by mastertlion

comment:7 Changed 5 years ago by Sebastian

Component: WebsiteBlog

Moving to new Blog component

comment:8 Changed 4 years ago by bugzilla

Keywords: xss blog torproject cross site scripting removed
Severity: Normal

Still not fixed?

comment:9 Changed 2 years ago by cypherpunks

Resolution: fixed
Status: newclosed

the new blog went online, I guess this is fixed now, otherwise please reopen.

comment:10 Changed 14 months ago by teor

Component: Internal Services/BlogWebpages/Blog

Moved closed tickets from Internal Services/Blog to Webpages/Blog

Note: See TracTickets for help on using tickets.