about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , phpFreeForum Multiple Cross Site Scripting Vulnerabilities


Title phpFreeForum Multiple Cross Site Scripting Vulnerabilities
Published 2008-05-22-12:00AM
Updated 2008-05-22-08:34PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  tan_prathan@hotmail.com
Vulnerable  phpFreeForum phpFreeForum 1.0 rc2
Not Vulnerable  
Code  To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI.The following proof-of-concept URIs are available:http://www.example.com/[phpfreeforum_path]/html/error.php?message=<XSS>
http://www.example.com/[phpfreeforum_path]/html/part/menu.php?nickname=<XSS>
http://www.example.com/[phpfreeforum_path]/html/part/menu.php?randomid=<XSS>
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 21:02:16 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
TorrentFlu ImagePorno NexentaOS Sir_Dzhuff 5DP0L00OAY news for c timesascen 200 /compo knoppix www.99f.ne Brithney s six amar search/exp www.SEXGri www.58lt.c vuln/explo search/exp viewbody1 Www.sextv. news for c SIVAJI user.qzone Crack+Data www.desiba Www memek ASP .NET Exim+smtpd news for c SEXCARTON. n.../1=1.h mambo Remo invoice WS_FTP Se sex video. Buah dada forums%252 www.123+cl php-nuke 2 wwe.summer thrisa at katrina ka microsof www.rentiy www xxx vi WWW.Saniam sakeela women hole Injection www.nsk100 csFTPd