|
Mobile Multiple Cross-Site Scripting Vulnerabilities
To exploit the issue, an attacker must entice an unsuspecting victim into following a malicious URI. The following proof-of-concept URIs are available: http://www.example.com/path/index.php?Bloks={XSS} http://www.example.com/path/index.php?Newnews={XSS} http://www.example.com/path/index.php?lBlok={XSS} http://www.example.com/path/index.php?foooot={XSS} http://www.example.com/path/MobileNews.php?Newnews={XSS} http://www.example.com/path/MobileNews.php?newmsgs={XSS} http://www.example.com/path/MobileNews.php?Bloks={XSS} http://www.example.com/path/polls.php?Newnews={XSS} http://www.example.com/path/send.php?cats={XSS} http://www.example.com/path/up.php?footer={XSS} http://www.example.com/path/cp/index.php?pagenav={XSS} |
|
|
Privacy Statement |