BugTraq
PhotoStore Multiple Cross-Site Scripting Vulnerabilities Sep 23 2006 09:45PM
meto5757 hotmail com
#################################################

PhotoStore Multiple Cross-Site Scripting Vulnerabilities

-------------------------------------------------

site : http://www.ktools.net/photostore/

-------------------------------------------------

Exploiting these issues could allow an attacker to steal cookie-based authentication credentials and to launch other attacks.

-------------------------------------------------

Exploite :

----------

http://www.example.net/[path]/details.php?gid=[xss]

http://www.example.net/[path]/view_photog.php?photogid=[xss]

--------------------------------------------------

Discoverd by :

meto5757 of rootshell security group

--------------------------------------------------

greets :

Ironfist , sverde1 , Dr.Viru$ , craziest (miss u!)

& all my friends :)

--------------------------------------------------

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus