about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PHPAdsNew AdFrame.PHP Cross-Site Scripting Vulnerability


Title PHPAdsNew AdFrame.PHP Cross-Site Scripting Vulnerability
Published 2005-03-14-12:00AM
Updated 2005-03-16-04:48PM
Class Input Validation Error
CVE   CAN-2005-0791
Remote  Yes
Local  No
Credit  Discovery of this vulnerability is credited to Maksymilian Arciemowicz <max@jestsuper.pl>.
Vulnerable  phpAdsNew phpAdsNew 2.0.4 pr1
Not Vulnerable  phpAdsNew phpAdsNew 2.0.4 -pr2
Code   No exploit is required.

The following proof of concept is available:
http://www.example.com/[phpAdsNew]/adframe.php?refresh=example.com'>[XSS code]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 11 Dec 2009 18:26:31 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
v3 arcade php advanc base_dir ip board 2 www.0duyy. www.xxx3x. Ws _ftp mambo Remo sex doggys www.iolywo Casta www.aajtak php advanc All+bollyw kolmo.com hanry skyrock.co wwwsexmovi 75.126.139 gta vice c Canonicali Sybase EAS IPB Portal 168.a383.t sexs anim WWW.bugil DHCP Serve php-nuke 2 xt commerc CVE-1999-0 WWW. Pakis DPH-540 D- Animal sex WWW.SEX69. videos de bathroom v sex2 www.id.edd www.school zhuxian2wa www.1dukon www.oklhc6 Divx conve CUBE samba%2b3. Sxs movi c xxxvid Sex in jal Freemobile taoying8.c