Apache Jakarta Lucene results.jsp XSS

medium Nessus Plugin ID 15908

Synopsis

The remote Apache Jakarta Lucene software is vulnerable to a cross- site scripting issue.

Description

The remote host is using Apache Jakarta Lucene, a full-featured text search engine library implemented in Java.

There is a cross-site scripting vulnerability in the script 'results.jsp' that may allow an attacker to steal the cookies of legitimate users on the remote host.

Solution

Upgrade to Apache Software Foundation Jakarta Lucene 1.4.3 or later.

Plugin Details

Severity: Medium

ID: 15908

File Name: apache_jakarta_xss.nasl

Version: 1.26

Type: remote

Published: 12/6/2004

Updated: 4/11/2022

Configuration: Enable paranoid mode, Enable thorough checks

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 4.3

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Information

CPE: cpe:/a:apache:jakarta_lucene

Required KB Items: www/PHP, Settings/ParanoidReport

Excluded KB Items: Settings/disable_cgi_scanning

Exploit Available: true

Exploit Ease: No exploit is required

Vulnerability Publication Date: 11/25/2004

Reference Information

BID: 11803

CWE: 20, 442, 629, 711, 712, 722, 725, 74, 750, 751, 79, 800, 801, 809, 811, 864, 900, 928, 931, 990