BugTraq
PHP iCalendar Cross Site Scripting Jun 28 2006 06:14PM
botan linuxmail org
>> K.S Advisory

>> irc.gigachat.net #kurdhack

>> Thanx : Netqurd,Azad,B3g0k,Fearless,Milex,Flot,Zay_Boy,PH,KHA,KCA and other my friends

>> Version : All Version

Proof Of Concept :

http://www.site.com/phpicalendar/rss/index.php?cal=[XSS]

Original Advisory :

http://kurdishsecurity.blogspot.com/2006/06/kurdish-security-12-php-ical
endar.html

EoF

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus