BugTraq
Back to list
|
Post reply
PhpBB Xs 2 profile.php Permanent Xss Vulnerability
Sep 20 2007 04:35PM
h3llcode hotmail it
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
PhpBB Xs 2 profile.php Permanent Xss Vulnerability
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
#Found By Seph1roth
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
[POST METHOD]
Corrupted page: profile.php?mode=editprofile&cpl_mode=profile_info
Bugged Variable: "selfdes" (Campo "Altre informazioni")
Xss: </textarea>[XSS STRING]
[ reply ]
Privacy Statement
Copyright 2010, SecurityFocus
PhpBB Xs 2 profile.php Permanent Xss Vulnerability
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
#Found By Seph1roth
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
[POST METHOD]
Corrupted page: profile.php?mode=editprofile&cpl_mode=profile_info
Bugged Variable: "selfdes" (Campo "Altre informazioni")
Xss: </textarea>[XSS STRING]
[ reply ]