about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , BlogPHP Multiple HTML Injection, Cross-Site Scripting and Cookie Manipulation Vulnerabilities


Title BlogPHP Multiple HTML Injection, Cross-Site Scripting and Cookie Manipulation Vulnerabilities
Published 2008-05-10-12:00AM
Updated 2008-05-10-12:00AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  David Sopas Ferreira
Vulnerable  BlogPHP BlogPHP 2.0
Not Vulnerable  
Code  Attackers can exploit these issues via a web browser. To exploit a cross-site scripting issue, an attacker must entice an unsuspecting user to follow a malicious URI.The following proof-of-concept for the cross-site scripting issue is available:http://www.example.com/index.php?act=sendmessage&user=admin[XSS]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 22 Nov 2008 23:16:00 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
teen sluts Young girl 200 /compo sexual in Naked pics Young girl pwned.c hhbbj Www.Dokhta Multiple Analnude t630t fuckingsex sex t630t Sac news urdu Nadal sex WWW.SIX300 hot se PHPNuke R pg 13 news for c local sex. com free sexy www.89.c0m ip office www.trish Sex doesn Xxx.com Namitha,ph t791t : aflam v emotion alldatass. clickedonr Naked Aish SERVER www.1224.n purnhup se news for c NARUOXXX t630t sex zahra Video porn alldatass. SNMP worm sourc Www world