Bug: minimal Gallery 0.8.1 XSS Vulnerability ( Ascii Version )

Search:
WLB2

minimal Gallery 0.8.1 XSS Vulnerability

Published
Credit
Risk
2012.09.16
ayastar
Low
CWE
CVE
Local
Remote
CWE-79
N/A ( Add )
No
Yes

#-----------------------------------------------------------------------------------------------
# title : minimal Gallery 0.8.1 XSS Vulnerability |
#-----------------------------------------------------------------------------------------------
# Author : ayastar |
#-----------------------------------------------------------------------------------------------
# Script Name : minimal Gallery v 0.8.1 |
#-----------------------------------------------------------------------------------------------
# Script Download Page : http://minimaldesign.net/downloads/projects/minimal-gallery |
#-----------------------------------------------------------------------------------------------
# Script Vulnerable Type : XSS Vulnerability |
#-----------------------------------------------------------------------------------------------
# Google dork ----> : "powered by minimal Gallery 0.8.1" OR "powered by minimal Gallery 0.8" |
#----------------------------------------------------------------------------------------------|
# [#]EXPLOIT : |
#htp://localhost/PAth/index.php?c=[XSS] |
#htp://localhost/PAth/index.php?s=[XSS] |
#htp://localhost/PAth/index.php?s=y&id=[XSS] |
#htp://localhost/PAth/index.php?m=[XSS] |
#htp://localhost/PAth/index.php?d=[XSS] |
#-----------------------------------------------------------------------------------------------
# greerz : to allah and all muslims from Morocco |
#-----------------------------------------------------------------------------------------------

References:

http://minimaldesign.net/downloads/projects/minimal-gallery

ASCII VERSION

Copyright 2013, cxsecurity.com
Ascii Version