││ C r a C k E r ┌┘
┌┘ T H E C R A C K O F E T E R N A L M I G H T ││
┌──── From The Ashes and Dust Rises An Unimaginable crack.... ────┐
┌┘ [ Vulnerability ] ┌┘
: Author : CraCkEr :
│ Website : https://www.phpjabbers.com/stiva-blog-script/ │
│ Vendor : PHPJabbers │
│ Software : PHPJabbers STIVA Blog Script 4.1 │
│ Vuln Type: Reflected XSS │
│ Impact : Manipulate the content of the site │
│ │
│ ┌┘
: :
│ Release Notes: │
│ ═════════════ │
│ The attacker can send to victim a link containing a malicious URL in an email or │
│ instant message can perform a wide variety of actions, such as stealing the victim's │
│ session token or login credentials │
│ │
┌┘ ┌┘
The_PitBull, Raz0r, iNs, SadsouL, His0k4, Hussin X, Mr. SQL , MoizSid09
CryptoJob (Twitter) twitter.com/0x0CryptoJob
┌┘ © CraCkEr 2023 ┌┘
Path: /preview.php
GET 'category_id' parameter is vulnerable to RXSS
GET 'lid' parameter is vulnerable to RXSS
GET 'archive' parameter is vulnerable to RXSS
GET 'keyword' parameter is vulnerable to RXSS
URL parameter is vulnerable to RXSS
[-] Done