Secunia Research: Gossamer Threads Links Script Insertion Vulnerabilities

======================================================================

                     Secunia Research 06/07/2005

     - Gossamer Threads Links Script Insertion Vulnerabilities -

======================================================================
Table of Contents

Affected Software....................................................1
Severity.............................................................2
Description of Vulnerability.........................................3
Solution.............................................................4
Credits..............................................................5
References...........................................................6
About Secunia........................................................7
Verification.........................................................8

======================================================================
1) Affected Software

Gossamer Threads Links SQL 3.01.

Other versions may also be affected.

======================================================================
2) Severity

Rating: Moderately critical
Impact: Cross-site scripting
Where:  From remote

======================================================================
3) Description of Vulnerability

Some vulnerabilities has been identified in Gossamer Threads Links, 
allowing malicious people to conduct script insertion attacks.

Input passed to the "Email" parameter in "user.cgi" and various 
parameters in "add.cgi" isn't properly sanitised before it is stored. 
This can be exploited to execute arbitrary code in the context of an 
administrative user's browser session when reviewing users and links.

The vulnerability has been confirmed in version 3.01. Other versions 
may also be affected.

======================================================================
4) Solution

Update to version 3.04.

======================================================================
5) Credits

Discovered by Secunia Research.

======================================================================
6) References

http://www.gossamer-threads.com/forum/Gossamer_Links_English_and_
German_3.0.4_Released_P283710/

======================================================================
7) About Secunia

Secunia collects, validates, assesses, and writes advisories regarding
all the latest software vulnerabilities disclosed to the public. These
advisories are gathered in a publicly available database at the
Secunia web site:

http://secunia.com/

Secunia offers services to our customers enabling them to receive all
relevant vulnerability information to their specific system
configuration.

Secunia offers a FREE mailing list called Secunia Security Advisories:

http://secunia.com/secunia_security_advisories/

======================================================================
8) Verification

Please verify this advisory by visiting the Secunia web site:
http://secunia.com/secunia_research/2005-26/advisory/

Complete list of vulnerability reports released by Secunia Research:
http://secunia.com/secunia_research/

=====================================================================