Back to list
*Note: Email address will appear as "user domain ext" to prevent harvesting.
XSS - CMS Made Simple v1.0.2
Dec 25 2006 09:13PM
Curtis Zimmerman (curtis zimmerman gmail com)
Product: CMS Made Simple v1.0.2
Found by: L0j1k of D.I.E. Inc.
Googledork: "powered by cms made simple"
Optional user comment module not properly sanitized for <script> tags.
Input the following into user commen...
[ more ]
Copyright 2010, SecurityFocus