Bugtraq mailing list archives

PHP iCalendar Cross Site Scripting


From: botan () linuxmail org
Date: 28 Jun 2006 18:14:42 -0000

K.S Advisory

irc.gigachat.net #kurdhack

Thanx : Netqurd,Azad,B3g0k,Fearless,Milex,Flot,Zay_Boy,PH,KHA,KCA and other my friends

Version : All Version 


Proof Of Concept : 

http://www.site.com/phpicalendar/rss/index.php?cal=[XSS]

Original Advisory : 

http://kurdishsecurity.blogspot.com/2006/06/kurdish-security-12-php-icalendar.html

EoF


Current thread: