about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , xt:Commerce Session Fixation and Cross Site Scripting Vulnerabilities


Title xt:Commerce Session Fixation and Cross Site Scripting Vulnerabilities
Published 2008-09-22-12:00AM
Updated 2008-09-22-12:00AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  David Vieira-Kurz from MajorSecurity
Vulnerable  xt:Commerce xt:Commerce 3.04
Not Vulnerable  
Code  To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI.The following example URIs are available:
  • /data/vulnerabilities/exploits/31313.html
  • TXT  t3xt 1t!


    Advertising

    Copyright 2007, SecurityDot
    Tue, 02 Dec 2008 22:55:23 +0000

    Friends : milw0rm.com , secunia.com , securityfocus.com
    GOOGLE
    NEWS EXPLOITS VULNS
    exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
    gey a s s wallp udp.pl www.realse www.realse www.realse www.dhakas ez publish www.realse sql.php t606t sexinkarac Sex pitch vipasa vipasa Indian del download+w 200 /compo ProFTPD CI chinesesex www.sexywe www,strpti Useable www.oceanb 200 /compo t606t ww.bebo.co Newsexy.Co www,strpti mambo Remo .asp CANADASEX SIXY VEDIO IPB 1.3 P IPB 1.3 P nowhere Zoosex vid www.sexy.r Feere.sex 7cow.com Apache 2.0 www..gadis www.sexy.r xp sp2 pri www.sexy.r Zoosex vid t386t WWW.Sex 30 t386t