CVE-2016-9834
MEDIUMSophos Cyberoam Firewall Firmware <= 10.6.4 - Stored Cross-Site Scripting via LiveConnectionDetail.jsp Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-9834. PoCs published by Bhadresh Patel.
AI-analyzed exploit summary This exploit demonstrates a reflected XSS vulnerability in Sophos Cyberoam Firewall's LiveConnectionDetail.jsp page. The PoC shows how an attacker can inject arbitrary JavaScript via the 'applicationname' and 'username' GET parameters to steal session cookies.
Description
An XSS vulnerability allows remote attackers to execute arbitrary client side script on vulnerable installations of Sophos Cyberoam firewall devices with firmware through 10.6.4. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of a request to the "LiveConnectionDetail.jsp" application. GET parameters "applicationname" and "username" are improperly sanitized allowing an attacker to inject arbitrary JavaScript into the page. This can be abused by an attacker to perform a cross-site scripting attack on the user. A vulnerable URI is /corporate/webpages/trafficdiscovery/LiveConnectionDetail.jsp.
Exploits (1)
This exploit demonstrates a reflected XSS vulnerability in Sophos Cyberoam Firewall's LiveConnectionDetail.jsp page. The PoC shows how an attacker can inject arbitrary JavaScript via the 'applicationname' and 'username' GET parameters to steal session cookies.
References (1)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N