=============================================================================== | | ~ .__ °.__ 0 o ^ .__ °__ `´ °____) __ __| | | °| ______°____ 0 ____ __ _________|__|/ |_ ___.__. / \| | °\ |°| | °/ ___// __ \_/ ___\| | °\_ __ \ o\ __< | | | o°| \ | / |_| |__\___ \\ ___/\ °\___| o| /| | \/ || |° \___ O| |___| /____/|____/____/____ °>\___ >\___ >____/ |__|° |__||__| / ____| `´´`´\/´`nullsecurity team`´\/`´´`´\/`´``´\/ ``´```´```´´´´`´``0_o\/´´`´´ PUBLIC SECURITY ADVISORY | | =============================================================================== ~|Title|: Adium - HTML/Javascript - Cross Site Scripting Vulnerability ~|Author|: noptrix ~|Date|: 08-02-2011 ~|Vendor|: Adium - http://www.adium.im/ ~|Affected Product|: Adium in version <= 1.4.2 ~|Affected Platforms|: Mac OS X (10.6.8, 10.6.7, maybe other also...) ~|Vulnerability Class|: Cross Site Scripting ~|Description|: Adium suffers from a persistent HTML/Javascript injection / Cross-Site Scripting vulnerability due to a lack of input validation and output sanitization of filenames. ~|Proof of Concept (or Exploit)|: The following HTML/Javascript payload can be used as a filename to trigger the described vulnerability: --- SNIP --- sh3ll$ echo "123" > \"\>\
\