<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>CVE on Saksham Anand</title>
    <link>/tags/cve/</link>
    <description>Recent content in CVE on Saksham Anand</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en-us</language>
    <lastBuildDate>Wed, 03 Nov 2021 00:00:00 +0000</lastBuildDate>
    <atom:link href="/tags/cve/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>CVE-2021-40848 Mahara | CSV Injection</title>
      <link>/blog/cve-2021-40848/</link>
      <pubDate>Wed, 03 Nov 2021 00:00:00 +0000</pubDate>
      <guid>/blog/cve-2021-40848/</guid>
      <description>Mahara is an electronic portfolio system that is used as an eLearning tool by education institutions around the globe. The software contains the ability to export records from the system into a CSV file. This blog will cover how that functionality can be abused (when inputs are not escaped correctly), to conduct local command execution (aka CSV injection).
For this demonstration, two accounts will be used. The first account will be the malicious actor where CSV injection payloads are saved into editable inputs.</description>
    </item>
    <item>
      <title>CVE-2020-26163 BigBlueButton | Host Header Injection</title>
      <link>/blog/host-header-injection-bigbluebutton/</link>
      <pubDate>Mon, 25 May 2020 00:00:00 +0000</pubDate>
      <guid>/blog/host-header-injection-bigbluebutton/</guid>
      <description>Back in April, one of the systems I was testing was a video conferencing application, known as BigBlueButton, an open source challenger to Zoom.
The BigBlueButton installation comes with a user friendly interface, known as Greenlight, which ties in nicely with the BigBlueButton server. While most of the corporate installations would be using LDAP authentication, at times, installation will be based on standard username and password login mechanism, which is handled by Greenlight.</description>
    </item>
    <item>
      <title>CVE-2020-12113 BigBlueButton | Closed Captions XSS</title>
      <link>/blog/cve-2020-12113/</link>
      <pubDate>Mon, 20 Apr 2020 00:00:00 +0000</pubDate>
      <guid>/blog/cve-2020-12113/</guid>
      <description>As part of a penetration testing project at Catalyst IT, I conducted a test on an open source video conferencing system known as the BigBlueButton, an open source challenger to Zoom.
The BigBlueButton contains a closed captions module, that allows a user to manually type captions, and all users with captions enabled can see them at the bottom of the screen. While the ability to add captions is only restricted to moderator level permissions, this issue is exaggerated, as when the breakout room functionality is used, all users are granted moderator level permissions, allowing them to write captions.</description>
    </item>
  </channel>
</rss>
