about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Ashwebstudio Ashnews Cross-Site Scripting Vulnerability


Title Ashwebstudio Ashnews Cross-Site Scripting Vulnerability
Published 2006-01-30-12:00AM
Updated 2006-01-30-12:00AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  0o_zeus_o0 and fraude are credited with the discovery of this vulnerability.
Vulnerable  Ashwebstudio Ashnews 0.83
Not Vulnerable  
Code  
An exploit is not required.

Example URI have been provided:

http://www.example.com/[path]/ashnews.php?page=showcomments&id=<script><script>alert(document.cookie)</script>

http://www.example.com/[path]/ashnews.php?page=showcomments&id=[xss]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 03:48:47 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
sexy.short www.htbaof news for c %252Fadmin blai /search/ex maxcpm.inf http://wsz news for c include fi news for c Remote Roo my.tianya. tamilsexve funing components www.shsofa news for c lion sexphotogr xyjsjy.com /search/ex Imagessexy Www.blue p thrishar s Searching Crack Data iikuxijufy www.trish local root Fedora cor sex.boys maxcpm.inf Yabajmd puranol /viewscree AT 9000/ad sexyfilim chinies se 89gallery rose mc go 22xi.cn t995t www.0574cr bbs.cnsilu PHP 5.0.4 www.214886 Embedded 89gallery india+sex+