Chucky A. Ivey N.T. Index.PHP Multiple HTML Injection Vulnerabilities


This issue can be exploited via a web client.

The following proof-of-concept examples are available:

URL: http://www.example.com/index.php
Username: [XSS]
Password: any

URL: http://www.example.com/index.php? id=editticker
Ticker width: 100"; [PHP_CODE] $aaa="


 

Privacy Statement
Copyright 2010, SecurityFocus