IDevSpot BizDirectory Multiple Cross-Site Scripting Vulnerabilities

An attacker can exploit these issues via a web client.

The following proof-of-concept URIs are available:

www.example.com/BizDirectory/Feed.php?stylesheet=[xss]
www.example.com/BizDirectory/status.php?message=[xss]


 

Privacy Statement
Copyright 2010, SecurityFocus