Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

AWStats 'awstats.pl' Cross-Site Scripting Vulnerability

An attacker can exploit this issue by enticing an unsuspecting user to follow a malicious URI.

The following example URI is available:

http://www.example.com/awstats/awstats.pl?config=www.example.com&%22onload=%22alert(document.domain)//







 

Privacy Statement
Copyright 2009, SecurityFocus