PHP Labs proFile File URI Variable Cross-Site Scripting Vulnerability

The following examples were provided:

http://www.example.com/index.php?act=delete&dir=&file=[XSS]
http://www.example.com/index.php?act=copy&dir=&file=[XSS]
http://www.example.com/index.php?act=rename&dir=&file=[XSS]


 

Privacy Statement
Copyright 2010, SecurityFocus