about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , TimeTrex Time and Attendance Module Multiple Cross-Site Scripting Vulnerabilities


Title TimeTrex Time and Attendance Module Multiple Cross-Site Scripting Vulnerabilities
Published 2008-08-21-12:00AM
Updated 2008-08-23-05:06PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Doz
Vulnerable  TimeTrex TimeTrex 2.2.12
TimeTrex TimeTrex 2.2.11
Not Vulnerable  TimeTrex TimeTrex 2.2.13
Code  An attacker can exploit these issues by tricking an unsuspecting user into following a malicious link.The following example URIs are provided:http://www.example.com/interface/Login.php?user_name=admin&password=XSS
http://www.example.com/interface/Login.php?user_name=XSS
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 21:40:21 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
news for c onlain gam putas gpl 13580.ling buffer ove news for c www.congxu sexvides:- news for C japansexy Kajol sexy Code NEIJIANG.z www.filmse Acikm Saniyamirz Www sexi c port 145 Sexy.video Video sex www.xinliz ftp passwo School sex MODx.html/ news for c .p?option= www.barbie blog-money proc asp.tj.cn 200 /compo www.india Form DS 23 WWW.SEXY.D www.89com/ PUNJABAN bb3portal ryan+inter Soppy news.com scan admin 3689 j...et/bbs ryan+inter atla Xxx.Sex apache 2.0 deepthi Galery pho