AEF 1.0.8 cross site scripting

2010.03.10
Credit: ItSecTeam
Risk: Low
Local: No
Remote: Yes
CVE: N/A
CWE: N/A

Dear Sir / Madam The Itsecteam has discovered a new bug in AEF Version 1.0.8 CMS and will be glad to report and public it . * more information about this bug is listed below : Topic : AEF Version 1.0.8 Bug Type : Cross Site Scripting Credit : ItSecTeam Remote : Yes Status : Bug Download Link :http://www.anelectron.com/downloads/ # mail : Bug@ItSecTeam.com # Dork : Powered By AEF Version 1.0.8 #Special Tnx : Amin Shokohi(Pejvak), 0xd41684c654 , r3dmove And All It Security Team Members #Website : WwW.ItSecTeam.com<http://www.itsecteam.com/> ########################## Exploit ############################# http://Site.Com/AEF/index.php?act=calendar&date=Xss


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top