CVE-2018-6824 Information
Feb 14, 2021
cve
Description
Cozy version 2 has XSS allowing remote attackers to obtain administrative access via JavaScript code in the url parameter to the /api/proxy URI as demonstrated by an XMLHttpRequest call with an ’email:\attacker@example.com' request which can be followed by a password reset.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Reference
http://www.lynxsecurity.io/releases/XSS20to20Account20Takeover20in20Cozy20Cloud.pdf Cozy version 2 has XSS allowing remote attackers to obtain administrative access via JavaScript code in the url parameter to the /api/proxy URI as demonstrated by an XMLHttpRequest call with an ’email:\attacker@example.com' request which can be followed by a password reset.
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
REQUIRED
Confidentiality Impact
CHANGED
Integrity Impact
LOW
Availability Impact
LOW
Base Score
NONE
Base Severity
6.1
Share on: