Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:18005
HistorySep 17, 2007 - 12:00 a.m.

new XSS vulnerability in php-stats -tracking.php

2007-09-1700:00:00
vulners.com
16

I found a new xss in php-stats 0.1.9.2

http://phpstats.net/

http://www.example.com/php-stats-path/tracking.php?what=online&ip=[XSS]

Stats must have public access for this (difference from whois.php XSS).