exploits , vulnerabilities , articles , Drupal URL-Encoded Input HTML Injection Vulnerability
| Title |
Drupal URL-Encoded Input HTML Injection Vulnerability |
| Published |
2006-01-01-12:00AM |
| Updated |
2006-01-02-08:45PM |
| Class |
Input Validation Error |
| CVE |
CVE-MAP-NOMATCH |
| Remote |
Yes |
| Local |
No |
| Credit |
Discovery is credited to liz0@bsdmail.com. |
| Vulnerable |
Drupal Drupal 4.6.5
Drupal Drupal 4.6.4
Drupal Drupal 4.6.3
Drupal Drupal 4.6.2
Drupal Drupal 4.6.1
Drupal Drupal 4.6
Drupal Drupal 4.5.7
Drupal Drupal 4.5.6
Drupal Drupal 4.5.5
Drupal Drupal 4.5.4
Drupal Drupal 4.5.3
Debian Linux 3.1
Debian Linux 3.1 alpha
Debian Linux 3.1 arm
Debian Linux 3.1 hppa
Debian Linux 3.1 ia32
Debian Linux 3.1 ia64
Debian Linux 3.1 m68k
Debian Linux 3.1 mips
Debian Linux 3.1 mipsel
Debian Linux 3.1 ppc
Debian Linux 3.1 s/390
Debian Linux 3.1 sparc
Drupal Drupal 4.5.2
Drupal Drupal 4.5.2
Drupal Drupal 4.5.1
Drupal Drupal 4.5
Drupal Drupal 4.4.3
Drupal Drupal 4.4.2
Drupal Drupal 4.4.1
Drupal Drupal 4.4
Drupal Drupal 4.2 .0 RC
Drupal Drupal 4.1 .0
Drupal Drupal 4.0 .0 |
| Not Vulnerable |
|
| Code |
The following URL-encoded examples were provided:
<img src=javascript:alert('XSS')>
<img src=javascript:alert('XSS')>
<img src=javascript:alert('XSS')>
<img src=javascript:alert('XSS')>
The discoverer has also provided an online tool to encode various strings at the following location:
http://liz0zim.no-ip.org/code.php
|
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Sat, 19 Dec 2009 01:43:44 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Arab foto ???\r\n platinium Www indian root_path www.szgold News Searc GIRLS SEX dgjs8866.b www.sixlin com_ja_sub www.mqdm.n american s without www.lunhui Reashma www.56hx.c www.56hx.c TRISHABATH www.56hx.c www.mqdm.n www.56hx.c www.56hx.c TRSHA www.56hx.c +www.trish youpron.co www.56hx.c all cartoo www.38yin. DEM Tamil nude madhuridix Manuel lo914l ppt news for C Cross Doma PHP 4.3.11 mallyalam sexgrils PHP 4.3.11 studentsex china.53tr news for c Saniyamirj How to sca www.56hx.c www.lw35.c 3gp xxx
|