about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , D-Link DSL-G624T Var:RelaodHref Cross-Site Scripting Vulnerability


Title D-Link DSL-G624T Var:RelaodHref Cross-Site Scripting Vulnerability
Published 2007-05-03-12:00AM
Updated 2007-05-04-10:39PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Tim Brown is credited with the discovery of this vulnerability.
Vulnerable  DLink DSLG624T 0
Not Vulnerable  
Code   An attacker can exploit this issue by enticing an unsuspecting user to follow a malicious URI.

The following proof-of-concept URI is available.

http://www.example.com/cgi-bin/webcm?getpage=../html/home/home_RelaodHref.htm&var:RelaodHref=a"%20==%20"a"){alert("XSS")}}</script>
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 02:04:26 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
sex arbic Powered b Revutsky www.159.co download c www.ncr2.c mallika sh Www.Aishse movies fil alexa.xue2 www.mfdy88 WWW.Trisha www.animal yecou.wany t371t 537538.com apache 200 xvedio news for c t371t www.tamilc Thems 22796.html Www.Free s a...Fpassw DLL attack www.it197. www.jsdymy Indonesia vll com_media message+bo www.mxdsos 1.0.1 movie.abfy maxcpm.inf Sarahngent PUSSIE.COM www.ruogu. Director P fully nake Japan.com Www.xuk phpbb%202. blue movie www.seavon components www.ly43.c blue movie Naked sani