Tyger Bug Tracking System Multiple Vulnerability

看板Bugtraq作者時間19年前 (2007/03/04 03:07), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串1/1
-=[--------------------ADVISORY-------------------]=- Tyger Bug Tracking System Author: CorryL [corryl80@gmail.com] -=[-----------------------------------------------]=- -=[+] Application: Tyger Bug Tracking System -=[+] Version: 1.1.3 -=[+] Vendor's URL: http://uk.homeunix.org/tyger/cms/ -=[+] Platform: Windows\Linux\Unix -=[+] Bug type: Cross-Site Script\Sql injection -=[+] Exploitation: Remote -=[-] -=[+] Author: CorryL ~ corryl80[at]gmail[dot]com ~ -=[+] Reference: www.xoned.net -=[+] Virtual Office: http://www.kasamba.com/CorryL -=[+] Irc Chan: irc.darksin.net #x0n3-h4ck ...::[ Descriprion ]::.. Tyger Bug tracking software has been designed and developed or individuals or groups of software developers to manage software development better. By using Tyger teams of developers are able to communicate far better with each fellow developers or end user's which ultimately improves the quality of your software project or product. ...::[ Proof Of Concept ]::.. [Sql injection] http://remote_server/ViewBugs.php?s=[sql]&o=ASC [Xss] [XSS]" rel="nofollow">http://remote_server/Login.php/>">[XSS] [XSS]" rel="nofollow">http://remote_server/Register.php/>">[XSS]
文章代碼(AID): #15wSTp00 (Bugtraq)