about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Ultimate Auction ItemList.PL Cross-Site Scripting Vulnerability


Title Ultimate Auction ItemList.PL Cross-Site Scripting Vulnerability
Published 2006-01-16-12:00AM
Updated 2006-01-16-12:00AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  querkopf@fn-guetersloh.org discovered this vulnerability.
Vulnerable  Ultimate Auction Ultimate Auction 3.67
Not Vulnerable  
Code   An exploit is not required.

An example URI sufficient to demonstrate this issue was provided:

http://www.example.com/cgi-local/auktion/itemlist.pl?category=<script>alert("XSS")</script>
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 09:29:30 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
aod www.garam. _____ ____ Sania mirz www.waimao cup sex vedio. Tasks Pro news for c MicrosoftT lo783l t607t www.aisuca tamil nude www.98.com /search/ex Trisha bat msn live sext tv.ht news for C php-nuke 2 maxcpm.inf news for c foto galer sex home kisdental. Gey maxcpm.inf /search/ex Www.sex.co FACE www.nxshen Free sexi xxltv local 2.6 real+sex www.981188 tp004.cn archive-08 Limp bizki addguest.h WWW.INDIAN www.zmccp. Sexgirl news for C news for c CMS is Fre news for c microsot r www700com