about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , CutePHP CuteNews Index.PHP Cross-Site Scripting Vulnerability


Title CutePHP CuteNews Index.PHP Cross-Site Scripting Vulnerability
Published 2006-03-04-12:00AM
Updated 2006-03-04-12:00AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Discovered by Roozbeh Afrasiabi, imei addmimistrator <roozbeh_afrasiabi@yahoo.com>.
Vulnerable  CutePHP CuteNews 1.4.1
Not Vulnerable  
Code   An exploit is not required.

The following proof of concept URI was provided:
http://www.example.com/index.php?subaction=showcomments&id=[number]&archive=&start_from=&ucat=&">[code]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 19 Dec 2009 05:46:03 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
/search/ex shmat 200 /compo Wap.Yahoo. 200 /compo News Searc Phatwhiteb IP spoofin nuke 7.6 www.sexoce mambo Remo news for c www.jyps.c ip board 2 Kantri tel eleven age www.asiaop web editio www.chinar asean sex iisibobula cer animo news for c BEA System SEXXY.GIRL Http/tuday music vido www.ffsjgz Boa Web se Bluemovieo SSH-1.99-O WWW.SEX.MO sex girlis Www.boolyw httpwwwsex www.wanshi /search/ex www.dfzlch CMS is Fre 200 /compo myspac.com 18year news for c ...dlogan ms08_067 /search/ex WWW.JSZ168 sexxx.tv phim sex h on rails