about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Z1Exchange SQL Injection and Cross Site Scripting Vulnerabilities


Title Z1Exchange SQL Injection and Cross Site Scripting Vulnerabilities
Published 2008-12-02-12:00AM
Updated 2008-12-04-09:11PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Pouya_Server
Vulnerable  1Scripts Z1Exchange 1.0
Not Vulnerable  
Code  An attacker can exploit these issues via a browser. To exploit a cross-site scripting issue, the attacker must entice an unsuspecting victim to follow a malicious URI.The following example URIs are available:http://www.example.com/[Path]/showads.php?id=[SQL]
http://www.example.com/[Path]/showads.php?id=<script>alert(1369)</script>
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 19 Dec 2009 04:02:53 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
butt news for c PHP Advanc 9090193708 No.4 www.top114 *** vido Www.Sex89v json CMS is Fre www sexmax Fukxxx animalssex www.huamei t261t mambo Remo t763t 200 /compo www.xw-bro passwordfi Invision 2 PhpLinkExc ww.tamilse news for C apache coy www.aptric mambo Remo linux priv 3gpsexvide 200 /compo www.gdjtf. /search/ex cat /etc// CMS is Fre www.sunsex nued sania wap phoner codes naru www.v7o.cn download s Get it big www.cqruix Crack __1c Www.sex19. windows p Modernbill ovo search/exp www.525jm. Linux kern