PT-2021-19431 · Sipwise · Sipwise C5 Ngcp Www Admin

Gjoko Krstic

·

Published

2021-04-23

·

Updated

2022-10-07

·

CVE-2021-31583

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Sipwise C5 NGCP WWW Admin version 3.6.7 up to and including platform version NGCP CE 3.0
Description The issue concerns multiple authenticated stored and reflected XSS vulnerabilities. These occur when input passed via several parameters to several scripts is not properly sanitized before being returned to the user. Specifically, the vulnerabilities are found in the following locations:
  • Stored XSS in callforward/time/set/save (POST tsetname);
  • Reflected XSS in addressbook (GET filter);
  • Stored XSS in addressbook/save (POST firstname, lastname, company);
  • Reflected XSS in statistics/versions (GET lang).
Recommendations For Sipwise C5 NGCP WWW Admin version 3.6.7 up to and including platform version NGCP CE 3.0, consider disabling the affected scripts until a patch is available. Restrict access to the callforward/time/set/save, addressbook, addressbook/save, and statistics/versions scripts to minimize the risk of exploitation. Avoid using the parameters tsetname, filter, firstname, lastname, company, and lang in the affected API endpoints until the issue is resolved.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2021-31583

Affected Products

Sipwise C5 Ngcp Www Admin