Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:23241
HistoryFeb 16, 2010 - 12:00 a.m.

Multiple Stored XSS in XOOPS 2.4.4 Admin Section

2010-02-1600:00:00
vulners.com
38

Greetz to all Darkc0de ,AI,ICW, AH Memebers

Shoutz to r45c4l,j4ckh4x0r,silic0n,smith,baltazar,d3hydr8,FB1H2S, lowlz,Eberly,Sumit,

Author: Beenu Arora

Home : www.BeenuArora.com

Email : [email protected]

Share the c0de!

################################################################

Exploit: Multiple Stored XSS in XOOPS 2.4.4 Admin Section

AppSite: www.xoops.org

Tested Version : 2.4.4

Request: POST

Sample URLs:-http://localhost/xoops/htdocs/modules/system/admin/groupperm.php

http://localhost/xoops/htdocs/modules/system/admin.php

################################################################