about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , myPHPNuke Links.php Cross Site Scripting Vulnerability


Title myPHPNuke Links.php Cross Site Scripting Vulnerability
Published 2003-02-20-12:00AM
Updated 2003-02-20-05:27PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Discovery of this vulnerability has been credited to Tacettin: Karadeniz <tacettinkaradeniz@yahoo.com>.
Vulnerable  myPHPNuke myPHPNuke 1.8.8 _final_7
myPHPNuke myPHPNuke 1.8.8
Not Vulnerable  
Code   The following proof of concepts were provided:

http://www.example.com/myphpnuke/links.php?op=MostPopular&ratenum=[scr!pt]alert(document.cookie);[/scr!pt]&ratetype=percent

http://www.example.com/myphpnuke/links.php?op=search&query=[scr!pt]alert('tacettin@olympos.org');[/scr!pt]?query=
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 22:45:53 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Quran read WWW.INDEYN 3GP sex Downloadvi Little gi www.myinda Www.fd5.co mambo Remo maxcpm.inf Www.Sex.89 FPTD 5.0 F MEN SEX www.0991sj www.cnchj. Free+sex+3 Raheemtp@g news for c neket men pop msexch video sex antiProxy filtershek naked phot news for c free text www.swalif 200 /compo Www.Aiswar Dhoom 2 xngin Indian sex Www.sexiar business-i news for c kajolsex sexirani Bigger sex sex dowinl win 2k Sex artis su root 200 /compo arab+sex+f sex 3 WWW.INDIAN p...roc/se mtv modernbill new arab s kar 20.inf